Microsoft 11803 Published by

Microsoft has announced Extended Protection for Authentication (EPA) on the Windows platform.



KB5021989: Extended Protection for Authentication

Introduction

Microsoft is announcing the availability of a new feature, Extended Protection for Authentication (EPA), on the Windows platform. This feature enhances the protection and handling of credentials when authenticating network connections by using Integrated Windows Authentication (IWA).

The update itself does not directly provide protection against specific attacks such as credential forwarding but allows for applications to opt in to EPA. This advisory briefs developers and system administrators on this new functionality and how it can be deployed to help protect authentication credentials.

For more information, see  Microsoft Security Advisory 973811.



KB5021989: Extended Protection for Authentication - Microsoft Support