Friday, March 13, 2026

After years of cyberattacks, Microsoft cripples RC4 and forces networks to adopt stronger encryption immediately


  • RC4 has been exploited in high-profile attacks across enterprise Windows networks
  • Kerberoasting exploits weaknesses in Active Directory, allowing attackers to perform offline password cracking
  • AES-SHA1 requires thousands of times more resources than RC4 for cracking

Microsoft is moving to disable RC4, an encryption cipher embedded in Windows authentication for more than two decades.

The decision follows years of documented abuse, repeated warnings from security researchers, and several high-impact breaches tied to its continued availability.

Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles