Windows

Microsoft Releases Update for Windows 11, version 25H2 and 24H2 Systems

Microsoft has officially released the optional non-security preview update KB5074105 for Windows 11, versions 25H2 and 24H2.

This release, part of the January 2026 “C-week” schedule, focuses on functionality enhancements, performance optimization, and reliability improvements rather than addressing security vulnerabilities.

As a cumulative update, it integrates previous fixes and introduces new changes to the operating system’s servicing stack and AI-driven components.

While this specific package is a non-security update, Microsoft has bundled a critical notification regarding the upcoming expiration of Windows Secure Boot certificates.

The certificates utilized by the majority of Windows devices are scheduled to expire beginning in June 2026. Administrators and users must prioritize this timeline, as failure to update these certificates prior to the deadline may result in the inability of personal and business devices to boot securely.

Microsoft strongly recommends reviewing the guidance on Certificate Authority (CA) updates to prevent operational disruption across enterprise environments.

To streamline administrative overhead, Microsoft has implemented a simplified title format for Windows updates starting with this release.

The new nomenclature removes redundant technical elements, such as platform architecture (e.g., x64-based systems), while retaining essential identifiers, including the date prefix, KB number, and build version.

This change aims to improve readability in log files and deployment tools like Windows Server Update Services (WSUS) and Microsoft Configuration Manager.

The KB5074105 update introduces significant refinements to the underlying models powering Copilot+ PC experiences and standard Windows 11 AI features.

These updates are delivered through a phased rollout, meaning availability may vary initially before reaching general availability. The specific component versions updated in this release are detailed below.

AI ComponentVersion Identifier
Image Search1.2601.1268.0
Content Extraction1.2601.1268.0
Semantic Analysis1.2601.1268.0
Settings Model1.2601.1268.0

This cumulative update includes the Servicing Stack Update (SSU) KB5074104, which brings the servicing stack version to 26100.7704. The SSU is responsible for installing Windows updates, ensuring the update engine itself remains robust.

Microsoft combines the latest SSU with the Latest Cumulative Update (LCU) to prevent version mismatches during deployment. Consequently, users cannot uninstall the SSU portion of this package once it has been applied.

IT administrators looking to deploy this update can access it via Windows Update for Business, the Microsoft Update Catalog, or WSUS.

For those needing to remove the LCU portion of the package for troubleshooting purposes, the standard wusa.exe /uninstall switch will fail due to the combined SSU payload.

Instead, administrators must utilize the Deployment Image Servicing and Management (DISM) tool. The specific syntax requires the /Remove-Package option combined with the precise LCU package name, which can be retrieved by running DISM /online /get-packages in an elevated command prompt. Microsoft reports no currently known issues associated with this release.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

4 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

5 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

5 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago