Microsoft Enables VBS and Memory Integrity by Default on Eligible Windows Devices
Brief
Microsoft has announced that starting in October 2026, Windows quality updates will automatically enable memory integrity protection and, where necessary, Virtualization-based Security (VBS) on eligible devices.
The rollout begins with the October 13, 2026 Patch Tuesday update, when eligible Windows 11 PCs will have memory integrity switched on with little or no user action required.
Memory integrity, also known as Hypervisor-Protected Code Integrity (HVCI), runs on top of VBS to ensure only trusted, verified kernel-mode code and drivers can execute.
Microsoft Enables VBS and Memory Integrity
If a device doesn’t already have VBS running, the same update will turn it on as well, since memory integrity depends on it.
