Skip to main content

Unsupported Windows 11 installs won’t get critical security updates

Microsoft updated the minimum Windows 11 system requirements last week, adding support for more CPUs and updating its PC Health Check app for Windows Insiders. At that time, Microsoft also shared with press that users who didn’t meet the minimum requirements would be able to install Windows 11 manually. Now, Microsoft has clarified that these “unsupported” users won’t receive Windows updates.

In a response to a question from PCWorld, Microsoft clarified that unsupported PCs won’t receive any updates through Windows Update. That includes the core operating system updates for features, as well as any security or driver updates. Users are free to download and install Windows 11 through the Media Creation Tool, but it’s a risky proposition given how little support Microsoft is giving to this route.

Laptop screen featuring a Windows update screen.
Arnav Singhal/Unsplash

Originally, it seemed it would offer users a way to use Windows 11 without a TPM 2.0 chip. This microprocessor serves as a vault on your motherboard and is useful for services like Windows Hello and Bitlocker. Without Windows Update, however, installing Windows 11 on an unsupported PC makes it even less secure than not using a TPM chip.

Recommended Videos

In order to run Windows 11, Microsoft only requires a 64-bit dual-core processor, 4GB of RAM, and 64GB of storage. However, the list of supported CPUs only goes back a few generations, locking out most 7th-gen Intel Core processors and all first-gen AMD Ryzen processors. The official requirements also call for TPM 2.0, barring users with TPM 1.2 or no TPM at all.

This brings into question Microsoft’s security initiative with Windows 11. The company has presented Windows 11 as the most secure Windows version ever, and it is — given that you have supported hardware. Users who built their own PC with unsupported parts aren’t able to take advantage of that.

It’s worth noting that TPM is only part of the security features that Windows 11 offers. By locking unsupported users out of Windows Update, the OS is considerably less secure. As the recent PrintNightmare fiasco has shown, Windows Update is critical for fixing security bugs that put user’s hardware at risk.

Without it, DIY builders with old machines are worse off than using Windows 11 without a TPM. Microsoft has clarified that this is only a temporary solution, so we don’t expect most users to install Windows 11 through the Media Creation Tool. At this point, we recommend sticking with Windows 10 if you have an unsupported PC.

Currently, users with unsupported hardware can still download Windows 11 through the Insider program. There’s also a method to create a “hybrid installer” to use Windows 11 on unsupported PCs. Both of these routes will still lock you out of Windows Update, so we wouldn’t recommend them for long-term use.

The official release of Windows 11 is coming soon. Microsoft hasn’t announced a time frame yet, but rumors suggest the OS will start rolling out in October. The company has adjusted its minimum specs once now, but we’ll have to wait to see if it does so again before launch.

Jacob Roach
Lead Reporter, PC Hardware
Jacob Roach is the lead reporter for PC hardware at Digital Trends. In addition to covering the latest PC components, from…
Whatever you do, don’t install the Windows 11 September update
Windows 11 logo on a laptop.

Microsoft has warned users in a post on its support blog that the September KB5043145 update, released on Thursday, is causing some Windows 11 PCs to restart multiple times, show the blue screen of death, or even freeze.

The problems in the recent update affect those on the 22H2 or 23H3 version of Windows 11. However, Microsoft said it is investigating the issue and will provide more information when it's available. Microsoft confirmed: "After installing this update, some customers have reported that their device restarts multiple times or becomes unresponsive with blue or green screens. According to the reports, some devices automatically open the Automatic Repair tool after repeated restart attempts. In some cases, BitLocker recovery can also be triggered."

Read more
Microsoft outlines Recall security: ‘The user is always in control’
Recall promotional image.

Microsoft just released an update regarding the security and privacy protection in Recall. The blog post outlines the measures Microsoft is taking to prevent a data privacy disaster, including security architecture and technical controls. A lot of the features highlight that Recall is optional, and that's despite the fact that Microsoft recently confirmed that it cannot be uninstalled.

Microsoft's post is lengthy and covers just about every aspect of the security challenges that its new AI assistant has to face. One of the key design principles is that "the user is always in control." Users will be given the choice of whether they want to opt in and use Recall when setting up their new Copilot+ PC.

Read more
Launching Windows 11 apps could get up to 50% faster thanks to this new tech
Microsoft Store Ads on a Dell XPS Laptop.

Windows Latest has spotted a recent support document post from Microsoft confirming native Ahead of Time (AOT) support has been added to the Windows App SDK. According to Microsoft, this could bring major improvements to the launch times of Windows 11 apps. In its own testing, Microsoft has measured a 50% reduction in start times and around an 8x reduction in package size.

The Windows App SDK exists to help developers use classic desktop app frameworks to make apps with access to modern APIs that can be used across all kinds of Windows devices.

Read more