Skip to main content
  1. Home
  2. Computing
  3. News

Windows 11 adds a new secure mode that blocks sketchy apps and drivers

It tightens runtime rules by default, but you can allow exceptions when needed.

Add as a preferred source on Google
A dark mystery hand typing on a laptop computer at night.
Andrew Brookes / Getty Images

Windows 11 is getting a new security mode meant to block risky software before it can dig into the system, especially the kind that hides behind drivers and background services.

Microsoft calls it Windows Baseline Security Mode. It turns integrity safeguards on by default, so signed apps, services, and drivers are the ones that run. If something is unsigned, Windows can stop it. You can still approve exceptions when you need to keep a legitimate tool working.

Recommended Videos

Microsoft is also pushing User Transparency and Consent. Windows will start prompting you when an app reaches for device or data access, and when an installer tries to add extra software you didn’t ask for. Those decisions won’t be permanent, you’ll be able to change them later.

Baseline Security Mode changes what can run

The big shift is that Windows is trying to make low-level changes harder to slip in quietly. Drivers and services are powerful, they can live deep in the OS and survive reboots, which makes them attractive to attackers and messy to remove.

With the safeguards enabled, code signing becomes the gate. That should cut down on silent installs of kernel drivers, system services, or helper processes that hook into other apps.

It’s also not a hard lock. If a trusted app gets blocked, you or your IT admin can allow an exception for that specific case. Microsoft says developers can detect when protections are active and whether an exception exists, which should reduce the usual troubleshooting fog.

The consent prompts are the other half

Baseline mode isn’t only about blocking code, it’s also about making behavior easier to see. Microsoft wants Windows to speak up when software tries to use things people actually care about, like the mic, camera, and files.

That matters because a lot of bad experiences aren’t classic malware. It’s installers that bundle extra stuff, apps that grab permissions they don’t need, or tools that change settings without making it obvious. Clear prompts, plus the ability to revisit choices later, makes that harder to hide.

For businesses, the same controls could mean fewer surprises across managed PCs, while still leaving room to approve older software that’s important to operations.

What to watch next

Microsoft describes this as a phased rollout, starting with more visibility into app and agent behavior, plus tools and APIs so developers can adapt. Later comes broader enforcement through Baseline Security Mode and the consent experience.

Your best next step is to watch Settings for new review controls, and watch driver makers and security vendors for updated guidance. If you rely on niche peripherals, that’s where friction tends to show up first.

Paulo Vargas
Paulo Vargas is an English major turned reporter turned technical writer, with a career that has always circled back to…
Substack now lets you check if a post was written by AI
A new Pangram-powered scanner lets you check posts, notes, and replies for signs of AI writing.
Video playing on Substack.

Substack is giving readers a way to check whether the post they're reading was written by a human or by a chatbot. The company has partnered with AI-detection firm Pangram to introduce new tools that will let users scan posts, notes, and replies for AI-generated text. CEO Chris Best introduced the features in a post titled "Against Claudefishing," his term for content that leans on AI while presenting itself as human work.

How the scanning tool works

Read more
China’s AI talent shortage has tech giants recruiting teenagers
Forget campus recruiting, china's biggest tech firms are betting on teenage coders.
Artificial Intelligence

A 13-year-old boy in Hangzhou has already won national AI competitions and built a following of more than 136,000 people online, all while his dad tries to figure out how to guide him through a field that barely existed when he himself was growing up. That family's situation, first reported by Rest of World, says a lot about where China's tech industry is heading right now.

Companies used to wait for graduates to walk through the door. Now they're reaching further back, first to undergrads, and increasingly to teenagers, hoping to spot rare talent before anyone else gets to them.

Read more
OpenAI says AI models autonomously pulled off a major hack, but only a Chinese AI helped recovery
OpenAI

OpenAI’s latest cybersecurity test produced a result that sounds like a cautionary sci-fi script. Its AI models managed to escape their sandbox and reached the open internet. This is where things took a scary turn as it began hacking Hugging Face to steal the answers to the test they were taking.

The company says GPT-5.6 Sol and a more capable unreleased model autonomously chained together vulnerabilities across OpenAI’s research systems and Hugging Face’s production infrastructure. OpenAI has described the event as an unprecedented cyber incident.

Read more