New Update Windows 11 KB5083769 April 2026 Patch Tuesday update

Gandalf_The_Grey

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Well-known
Forum Veteran
Apr 24, 2016
7,788
6
82,798
8,389
54
The Netherlands
Microsoft has released the April 2026 Patch Tuesday updates for Windows 11 25H2, 24H2. The 25H2 and 24H2 update is provided via KB5083769 (manual download link below), build 26100.8246 on 24H2, and build 26200.8246 on 25H2, after applying the updates.

The full changelog is given below:
  • [Secure Boot]
    • New! The status of Secure Boot certificate updates on your device may be displayed in the Windows Security app (Settings > Privacy & security > Windows Security). These enhancements are disabled by default on commercial devices.
    • With this update, Windows quality updates include additional high confidence device targeting data, increasing coverage of devices eligible to automatically receive new Secure Boot certificates. Devices receive the new certificates only after demonstrating sufficient successful update signals, maintaining a controlled and phased rollout.
    • This update addresses an issue where the device might enter BitLocker Recovery after the Secure Boot updates.
  • [Networking] This update improves reliability when Windows uses SMB compression over QUIC. After you install this update, SMB compression requests over QUIC complete more consistently, reducing the likelihood of timeouts and supporting smoother, more dependable performance.
  • [Remote Desktop] This update improves protection against phishing attacks that use Remote Desktop (.rdp) files. When you open an .rdp file, Remote Desktop shows all requested connection settings before it connects, with each setting turned off by default. A one-time security warning also appears the first time you open an .rdp file on a device.
  • [Reset this PC (known issue)] Fixed: This update addresses an issue that might cause device reset to fail when using the “Keep my files” or “Remove everything” options. This might occur after installing the March 2026 (KB5079420) Hotpatch security update.
 
Important note

I cannot verify April 2026 Windows update details from a Neowin post alone, so I would avoid treating this as fully confirmed until it matches Microsoft’s official release information.

What the changelog is claiming

If the quoted notes are accurate, the main changes appear to be:

  • Secure Boot certificate update visibility in Windows Security
  • Expanded targeting for Secure Boot certificate delivery
  • A fix for BitLocker Recovery being triggered after Secure Boot updates
  • Improved SMB compression over QUIC reliability
  • Better protection when opening .rdp files by showing requested settings disabled by default
  • A fix for failed "Reset this PC" operations after a previous hotpatch update

Security-relevant parts

The most meaningful items from a security perspective would be:

  • Secure Boot / BitLocker: If there really was a BitLocker Recovery issue tied to Secure Boot updates, that fix is significant for affected systems.
  • Remote Desktop: Showing all requested .rdp settings before connection is a sensible hardening step against malicious or misleading RDP files.
  • Reset this PC fix: This is more reliability than security, but it matters if recovery options were broken.

Practical view

For most home users, Patch Tuesday security updates should generally be installed, but with standard caution:

  • Make sure BitLocker recovery keys are backed up before installing updates that mention Secure Boot or BitLocker behavior.
  • Create a recent backup or restore point if the device is important.
  • If you use Remote Desktop files from email, downloads, or shared folders, be extra cautious even with the new warning behavior.
  • If you manage business devices, wait for Microsoft’s official documentation and known-issues notes before broad deployment.

About the source

Neowin often reports Windows update news quickly, but it is still a third-party source. The safest way to confirm the KB number, build numbers, and changelog is through Microsoft’s official Windows release health or update history pages.

Bottom line

The changes described look plausible and mostly beneficial, especially the RDP and Secure Boot items, but they should be verified against Microsoft’s official release notes before being treated as definitive.

Sources
 
The April 2026 KB5083769 security update breaks third-party backup applications from multiple vendors on systems running Windows 11 24H2 and 25H2.
According to user reports, first spotted by Microsoft MVP Susan Bradley, this issue affects software using VSS (Volume Shadow Copy Service) snapshots and causes failures due to a VSS service timeout.
Microsoft VSS was introduced in Windows Server 2003 and helps ensure that the operating system, backup software, and business apps (such as SQL Server and Exchange) work together more effectively. VSS is also used by Windows features and applications like Windows Server Backup, System Center Data Protection Manager, and System Restore.
The list of software impacted by this known issue includes, but is not limited to, products from Acronis (Cyber Protect Cloud), Macrium (Reflect), NinjaOne Backup, and UrBackup Server.
Acronis has also published a support document confirming that the issue affects Windows 11 Pro and Home editions, causing backup operations to fail with the error "The backup has failed because Microsoft VSS has timed out during the snapshot creation" after installing the KB5083769 update.
"This update may introduce system-wide issues that affect Microsoft VSS (Volume Shadow Copy Service) operations, leading to backup failures," Acronis says. "In some cases, the affected machine may also lose connectivity with the cloud console and appear offline."
As a temporary workaround, affected users are advised to uninstall the problematic "Security update for Microsoft Windows (KB5083769)" from Settings > Windows Update > Update history > Related settings > Uninstall updates, then pause Windows updates and reboot the system.
BleepingComputer reached out to Microsoft for more information, but a response was not immediately available.
Earlier this month, Microsoft also released out-of-band (OOB) updates to fix issues affecting Windows Server systems that caused them to enter restart loops and trigger update installation failures after installing the April 2026 security updates.
Microsoft also warned that some Windows Server 2025 devices will boot into BitLocker recovery and ask for a BitLocker key after installing the KB5082063 update.
 
A reasonable policy for some now seems to be unless its a critical exploited issue is to wait a while after Patch Tuesday, I don't do that but I always do a full system image before the update & label it clearly so if issues arise I can go back, I know some members on here do wait a while, in all honestly its been a long time since a Tuesday update caused me issues but it does happen.
 
Microsoft has confirmed that the April 2026 security updates are causing failures in third-party backup applications using the psmounterex.sys driver.

As BleepinComputer reported last week, this issue affects software using VSS (Volume Shadow Copy Service) snapshots and causes failures due to a VSS service timeout.

Software impacted by this includes, but is not limited to, products from Macrium (Reflect), Acronis (Cyber Protect Cloud), UrBackup Server, and NinjaOne Backup running on Windows 11, Windows Server, and Windows 10 devices.

Microsoft has now updated its support documents to confirm that the April updates include a security hardening change that adds psmounterex.sys to the company's vulnerable driver blocklist to defend users against attacks targeting a high-severity buffer overflow vulnerability (CVE-2023-43896) that allows attackers to escalate privileges or execute arbitrary code.

Microsoft also advised those affected by this issue to update to a newer version of their app that uses newer drivers, which include the required protections.
Read more on:
 

You may also like...