WSL (Windows Subsystem for Linux) , Microsoft's network security toolkit that allows users to run Linux natively on Windows without needing a dual-boot setup, underwent significant enhancements and updates in May 2024 . These changes bring numerous security and user experience benefits. . Let's examine the changes made to WSL and discuss security best practices you can easily implement to improve its security further. What Changes Has Microsoft Made to WSL This Month? Alongside improvements in memory, storage, and networking capabilities, a new WSL Settings GUI application has been introduced to simplify customizing and managing settings. With Zero Trust enabled in WSL, enhanced security measures include Microsoft Defender for Endpoint support and secure authentication with Entra ID integration. Dev Home now also allows users to manage WSL distros, launch development environments, and utilize features like Sudo for Windows and an AI-powered quickstart playground, providing Linux admins with enhanced functionality, security, and an overall better development experience. These updates give Linux administrators increased functionality and provide a better user experience. Let's explore these recent changes in mode detail: Memory, Storage, and Networking Improvements: Improvements have been implemented for memory management, storage space reclamation, and networking support. These improvements include automatically releasing stored memory back to Windows and setting default settings for memory reclamation, plus enhanced networking features. WSL Settings GUI Application: The WSL Settings GUI will soon be unveiled. It will simplify the customization and management of settings within WSL. With labeled categories for settings, this interface should simplify configuring configurations for end-users. WSL Zero Trust: The Windows Subsystem for Linux now operates under Zero-Trust principles , and new features and support have been introduced to provide additional securitybenefits to enterprises using WSL. These include Defender for Endpoint support for WSL 2, Linux Intune agent integration to manage settings, and Microsoft Entra ID integration for authentication purposes. Dev Home Environments feature: Environments is a new feature within Dev Home that allows users to manage, launch, and create development environments, including WSL distros, within the Dev Home platform, further enriching the development experience. Bonus Improvements: Additional enhancements include the introduction of 'Sudo for Windows,' which allows users to utilize sudo commands in Windows for certain commands that use sudo privileges. Furthermore, an AI-powered quickstart playground feature within Dev Home enables users to set up Linux development environments using AI-generated prompts quickly. Practical Advice for Strengthening WSL Security WSL users have the convenience of accessing Linux through the cloud or a Windows computer instead of a Linux desktop, but doing so opens up more attack surfaces for malicious hackers. While the recent updates made to WSL will improve admins' and developers' experience and security, there are several best practices we recommend implementing to bolster your security further when using WSL: Update all the apps in your custom virtual image to the latest versions. Use a disaster recovery and business continuity strategy to protect your data during unforeseeable outages. Protect your network from threats using anti-malware software from reputable vendors. Use JIT VM access (just-in-time) to restrict traffic entering management ports. Create network security groups and set up rules to govern the screen traffic so that you can quickly address cybersecurity vulnerabilities. Install Microsoft Defender for Endpoint , which uses behavioral sensors to collect behavioral signals and analyze them. MDE alerts Microsoft analysts when it detects threats. They analyze the risks and offer remediation measures. You must usuallydisconnect the compromised devices while maintaining a connection with MDE to monitor your server. Our Final Thoughts on the Recent Changes Made to WSL The recent changes Microsoft has made to WSL are significant and will greatly improve users' and developers' experience and level of security using WSL. By engaging in the practical tips and security best practices we've discussed, users can further bolster the security of their WSL environment to protect against vulnerabilities and exploits. For more practical Linux security tips, information, and updates, be sure to subscribe to our Linux Security Week and Linux Advisory Watch newsletters . Stay safe out there, WSL users! . Delve into the latest updates in WSL and discover actionable security measures to elevate your Linux functionality on Windows today.. Windows Subsystem for Linux, WSL security enhancements, Linux security improvements. . Dave Wreski
Windows Subsystem for Linux (WSL) is a powerful piece of software wizardry that allows users to run GNU/Linux environments directly in Windows without requiring virtual machines (VMs) or dual-boot configurations. Available for both Windows 10 and Windows 11 , it's a very handy utility, especially for cross-platform development and testing. Microsoft regularly updates WSL with new features and capabilities. Today, it has announced WSL version 0.65.1 for Insiders. . As spotted by Windows Central , Microsoft's Manager of the Linux on Windows team Ben Hillis has confirmed that WSL 0.65.1 is available for all Windows Insiders , regardless of the release channel they are currently on. The idea is to cast a wide net for feedback by making it available for all Insiders and then use that feedback to determine whether the release is fit for general availability. . The latest version 0.65.1 of Microsoft’s Windows Subsystem for Linux has been rolled out to all Insiders, enhancing the synergy between Linux and Windows.. Windows Subsystem for Linux, Cross-Platform Dev, WSL 0.65.1, Linux on Windows. . LinuxSecurity.com Team
Get ready, developers- Microsoft's WSL 2 is getting graphics support! . The Windows Subsystem for Linux (WSL) is an important part of Windows 10. Using a version of Microsoft's Hyper-V virtualisation technology, it lets you run Linux as if it was part of Windows, sharing resources and files. It was originally designed for developers building web and cloud applications, but it's turned into something a lot more powerful that brings two very different operating systems together. Microsoft originally designed WSL for use with the bash command line, but it has evolved into something much more akin to a traditional Linux distribution. Instead of using Microsoft's original set of shims and translations to convert Linux syscalls to Windows calls, it now uses a Microsoft-compiled and supported Linux kernel, initially using the 4.19 kernel release but now rolling out a more up-to-date 5.4. That change has improved support for Linux applications, with most running without need for any changes. There are some issues: as it's a subsystem it isn't launched at startup, so there's no support for timed jobs or for services using systemd. . Unveiling upgraded GUI capabilities in Windows Subsystem for Linux, improving user experience for developers with enhanced graphical interface features.. Windows Subsystem for Linux, Developer Tools, GUI Features. . LinuxSecurity.com Team
As potentially a big game changer for those needing performant Linux access from a Windows 10 / Windows Server installation, Intel's Clear Linux will be exploring support for running on Microsoft's Windows Subsystem for Linux (WSL). . A Phoronix reader pointed out to us this GitHub thread where one of the developers will begin exploring WSL support this week. The link for this article located at Phoronix is no longer available. . Clear Linux aims to boost efficiency within the Windows Subsystem for Linux, ensuring improved compatibility and user experience.. Clear Linux, Windows Subsystem, Linux Performance, Intel Development. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.