Microsoft Patch Tuesday Crashes LSASS Process, Causes Infinite Reboot Loops

This title was summarized by AI from the post below.

🔴 Microsoft just broke its own servers. Again. April 2026 Patch Tuesday dropped KB5082063 on April 14. By April 16, domain controllers were stuck in infinite reboot loops. Here's what actually happened and what you should do right now. The problem: KB5082063 crashes LSASS the process that handles every single login on your network. No LSASS, no authentication. No authentication, your domain goes dark. And because Windows tries to self-recover, it reboots... hits the same crash. reboots again. Infinite loop. It only hits non-Global Catalog domain controllers running PAM environments. So not universal but if you're affected, your entire network is down. The fix: Microsoft pushed emergency out-of-band updates on April 19: KB5091157 Windows Server 2025 KB5091575 Windows Server 2022 Both are live on Windows Update, WSUS, and the Microsoft Update Catalog right now. One more thing to check: Windows Server 2025 devices are randomly booting into BitLocker recovery mode after this update. Make sure your users have their recovery keys before you push anything. An uncomfortable truth nobody's saying out loud: This is the third consecutive April that Microsoft has broken domain controllers with a Patch Tuesday update. 2024 —>NTLM authentication failures. 2025 — >Active Directory auth problems. 2026 — >LSASS crash, infinite reboot loop. At what point does "isolated incident" become a pattern you need to plan around? #SysAdmin #WindowsServer #PatchTuesday #Microsoft #ITOperations #CyberSecurity #ActiveDirectory

  • No alternative text description for this image

To view or add a comment, sign in

Explore content categories