Microsoft: Outdated Windows devices will stop receiving security updates

As of next year, millions of outdated Windows devices will no longer receive security updates from Microsoft, leaving them vulnerable to cyber attacks. The tech giant has announced that it will stop providing security patches for unsupported versions of Windows after the rotation of its Windows Update certificates in May and June 2027.

This means that users and administrators who haven’t upgraded their operating system to a supported version will lose access to essential security updates, making them an attractive target for hackers. In other words, if your device is running on an outdated version of Windows, it won’t be able to receive any new security patches or updates from Microsoft.

But why does this matter? The reason is simple: unsupported versions of Windows are no longer receiving security updates because their digital certificates have expired. Think of these certificates like a driver’s license – they eventually need to be renewed to ensure the device stays secure. In May and June 2027, two sets of these certificates will expire, marking the end of support for many outdated devices.

To mitigate this risk, Microsoft is urging administrators and users to upgrade their operating system to a supported version of Windows before the certificate rotation next year. The company has provided detailed guidance on the required actions by Windows version, which includes installing specific security updates or upgrading to a newer version altogether.

For example, if you’re running Windows 11, version 24H2 or later, no action is required – you’ll continue to receive security updates without any issues. However, if you’re using an older version of Windows, such as Windows Server 2016 or Windows 10 Enterprise 2019 LTSC, you’ll need to install the latest security update before May and June 2027.

Microsoft has also emphasized the importance of identifying devices running on outdated versions of Windows and creating a plan to upgrade them before the certificate rotation next year. The company recommends deploying monthly Windows updates on all supported devices and keeping an eye out for any potential issues that may arise during the transition.

It’s worth noting that this doesn’t apply to devices that receive updates from Windows Server Update Services (WSUS), which downloads and distributes updates across enterprise networks. If you’re unsure about your device’s status or need help with the upgrade process, Microsoft has provided a range of resources to guide you through the transition.

In conclusion, it’s essential for users and administrators to take immediate action to ensure their devices remain secure. With millions of outdated Windows devices at risk, now is the time to review your system’s configuration and create an upgrade plan before next year’s certificate rotation. By taking this proactive step, you’ll not only protect your device from cyber threats but also future-proof it for years to come.

Remember, staying ahead of security risks requires a proactive approach – don’t wait until it’s too late! Review your Windows version, identify any potential issues, and create an upgrade plan today to ensure your device remains secure in the face of evolving cyber threats.


Source: Bleeping Computer — 2026-10-09