When “protection” becomes control, simplicity dies.
Microsoft once built software people could understand. You turned on the computer, it worked. No accounts, no permissions, no “security templates.”
Now every Windows system and virtual machine comes with Secure Boot, TPM, and a pile of “protections” that serve one purpose — control.
In Hyper-V, these are enabled automatically every time you create a new VM. They’re the same restrictions baked into Windows 11 hardware requirements. Supposedly they keep users safe. In practice, they lock users out of their own systems.
- You can’t boot Linux or older tools without disabling “security” first.
- You can’t replace or test an OS freely.
- Even virtual machines get policed like physical hardware.
This isn’t about safety; it’s about enforcement. Microsoft defines the sandbox and decides who plays in it.
The KISS principle — Keep It Simple, Stupid — died the moment the company stopped trusting the user. Real simplicity means freedom to build, test, and repair without red tape.
Security should protect people, not handcuff them. When the operating system becomes the gatekeeper, the user stops being the owner.