Windows 10 antivirus is getting another useful update

(Image credit: Shutterstock)

Microsoft has released a new tool that should pug a security gap found to be affecting Windows 10, Windows Server 2019 and Windows Server 2016 installation images. 

The patch works by allowing system administrators to update Windows’ default security package, Microsoft Defender, more easily.

In an enterprise environment, installation images are often used to mass install or service the Windows operating system on client computers. Unfortunately, this means that the images used may be outdated, leaving a vulnerability that could be exploited by malware.

Much-needed update

“Initial hours of newly installed Windows OS deployments can suffer with Microsoft Defender protection gap, as the installation OS images may contain outdated Anti-Malware Software binaries,” Microsoft explained in a support post accompanying the update. “These devices will remain under-protected until the first Anti-Malware software update finishes.”

The latest Microsoft Defender update script can be used to manually update Windows install images with the latest malware protection before they are installed across an organisation’s entire fleet of devices. In addition to monthly updates, the Defender update also allows administrators to remove updates and view details of any installed patches.

In order to install the new Windows 10 antivirus Microsoft Defender update tool, users first have to download the relevant package for their Windows image architecture (either 32 or 64- bit), before running the following script with administrative privileges:

PS C:\> DefenderUpdateWinImage.ps1 - WorkingDirectory<path> -Action AddUpdate - ImagePath <path_to_Os_Image> -Package <path_to_package>

The script required to roll back the update is as follows:

PS C:\> DefenderUpdateWinImage.ps1 - WorkingDirectory<path> -Action RemoveUpdate - ImagePath <path_to_Os_Image>

And viewing details or installed updates is as simple as issuing the following command:

PS C:\> DefenderUpdateWinImage.ps1 - WorkingDirectory<path> -Action ShowUpdate - ImagePath <path_to_Os_Image>

With installation images proving a popular way for enterprises to clone and deploy specific Windows configurations en masse, Microsoft’s decision to patch up the security around this process is likely to be a welcome one.

Barclay Ballard

Barclay has been writing about technology for a decade, starting out as a freelancer with ITProPortal covering everything from London’s start-up scene to comparisons of the best cloud storage services.  After that, he spent some time as the managing editor of an online outlet focusing on cloud computing, furthering his interest in virtualization, Big Data, and the Internet of Things. 

Read more
Angry man hitting his laptop with a hammer
Major Windows 11 fails make Microsoft’s ‘Fix problems using Windows Update’ tool more useful than ever – but it might not work for you
A building at the Microsoft Headquarters campus in Redmond, Washington (2014).
Microsoft patches worrying zero-day along with 71 other flaws
Representational image of a cybercriminal
Microsoft discovers five potentially damaging attacks against its own software
Copilot on a laptop
Microsoft quietly updates Copilot to cut down on unauthorized Windows activations
Representational image of a cybercriminal
Microsoft just patched a host of worrying security issues, so update now
A man getting angry with his laptop.
Windows 10 update installation failures aren’t rare – but an update that won’t stop installing itself is a new one on me
Latest in Security
A graphic showing fleet tracking locations over a city.
Lost & Found tracking site hit by major data breach - over 800,000 could be affected
US President Donald Trump speaks to the press as he signs an executive order to create a US sovereign wealth fund, in the Oval Office of the White House on February 3, 2025, in Washington, DC.
US set to pause cyber-offensive operations against Russia - but CISA says it won't stop
Web DDoS attacks see major surge as AI allows more powerful attacks
Polish space agency says it was hit by a cyberattack
Illustration of a hooked email hovering over a mobile phone
AWS misconfigurations reportedly used to launch phishing attacks
A concept image of someone typing on a computer. A red flashing danger sign is above the keyboard and nymbers and symbols also in glowing red surround it.
Microsoft Teams and other Windows tools hijacked to hack corporate networks
Latest in News
Google Gemini iPhone Lock Screen
You can now access Gemini from your iPhone's lock screen
Michelle, Keats, and Doctor Amherst looking unimpressed and worried in The Electric State
Netflix drops trailer for The Electric State, and I'm getting serious District 9 vibes
YouTube TV
YouTube TV might be planning a big Netflix update that puts the best streaming services first
Google Pixel 9 Pro
Here are the 7 best Pixel 9 and Pixel Watch 3 features landing in March’s Pixel Feature Drop
Bang &amp; Olufsen Beogram 4000C Saint Laurent Rive Droite Edition
Bang & Olufsen's latest reworked turntable is a masterpiece of retro revival, in a breathtaking wooden presentation box
Apple Watch Series 10
Apple unveils new Apple Watch bands – here's what's in the Spring 2025 collection