Overview
- Microsoft announced on September 1 that Windows quality updates will begin automatically enabling Memory Integrity (Hypervisor‑Protected Code Integrity) on eligible Windows 11 devices in October 2026.
- Those quality updates will also turn on Virtualization‑based Security (VBS) where it is not already running because Memory Integrity depends on VBS to isolate kernel code checks from the rest of Windows.
- Windows will run a per‑device readiness check before enabling the feature, testing CPU virtualization, compatible drivers, sufficient RAM and SSD space, and expected performance to avoid widely breaking systems.
- Systems with Memory Integrity manually or administratively disabled will not be changed by the rollout, and IT teams can manage the setting at scale via Group Policy, Intune, or registry keys and use the CodeIntegrity event log to diagnose incompatible drivers.
- Users—especially gamers or anyone running undervolting or legacy kernel drivers—should watch for driver blocks or reduced frame rates on some hardware because older CPUs and incompatible drivers can cause crashes, blocked drivers, or measurable game slowdowns.