Windows 10’s coffin is already six feet under. The October 14, 2025 end-of-support deadline came and went, leaving millions of PCs officially adrift without security updates. Yet Microsoft’s free upgrade path to Windows 11 remains open—even in 2026. For users clinging to old hardware that falls short of the strict TPM 2.0 and Secure Boot demands, the Rufus USB installer offers a well-worn detour. Here’s how to navigate the official upgrade tools, bypass hardware checks, and make the jump without paying a cent.

The End of Windows 10: What It Means

When Microsoft pulled the plug on Windows 10 support on October 14, 2025, the operating system stopped receiving security patches, bug fixes, and technical assistance. For the average home user, that means every day connected to the internet is a gamble with unpatched vulnerabilities. Enterprises could buy extended security updates (ESUs) for up to three years, but consumers are left to fend for themselves.

The free upgrade to Windows 11, first announced in 2021, was supposed to be a limited-time offer, yet Microsoft has never officially closed the door. In 2026, inserting a valid Windows 10 product key—or relying on a digital license linked to a Microsoft account—still activates Windows 11 without charge. The company likely keeps the free path open to avoid a fragmented security landscape.

For those still on Windows 10, the choice is stark: upgrade, pay for ESUs (if available for your SKU), switch to Linux, or risk using an insecure OS. Windows 11’s adoption has been steady but not explosive, partly because of its stringent hardware requirements. That’s where workarounds come in.

Official Upgrade Paths: Four Ways to Get Windows 11 Legitimately

Microsoft offers four official tools to move from Windows 10 to Windows 11. Each works for different scenarios, and all are free.

1. Windows Update

The simplest route is via Settings > Update & Security > Windows Update. If your PC meets the minimum requirements, a “Upgrade to Windows 11” banner appears. Click “Download and install,” and the update downloads in the background. After a series of prompts and restarts, you’re on Windows 11 with all files, apps, and settings preserved. The process typically takes 30–90 minutes, depending on hardware and internet speed.

2. Installation Assistant

For users who don’t see the banner or want to trigger the upgrade manually, the Windows 11 Installation Assistant forces the process. Download the tool from Microsoft’s website, run it, and it checks compatibility. If passed, it downloads the full OS and performs an in-place upgrade. This method is useful for PCs that are compatible but not receiving the update through Windows Update due to phased rollout delays.

3. Media Creation Tool

The Media Creation Tool offers two options: upgrade this PC now or create bootable USB/DVD media for another machine. The tool downloads the latest Windows 11 ISO and either launches setup or writes the image to external media. It’s the go-to for clean installs or upgrading multiple machines. The tool also passes hardware compatibility checks before proceeding.

4. ISO Download and Manual Install

Advanced users can download the Windows 11 ISO directly from Microsoft and perform a clean installation. This involves booting from a USB or DVD, deleting partitions, and starting fresh. While more labor-intensive, it eliminates any lingering Windows 10 cruft. Activation still works with a Windows 10 digital license, but you may need to enter a product key if the hardware has changed significantly.

All official methods require a genuine Windows 10 license—either a retail key or a digital entitlement tied to the hardware. In most cases, a Windows 7 or 8.1 key also works, though that loophole has officially closed according to Microsoft, even if it occasionally still activates.

The Hardware Hurdle: TPM 2.0 and Secure Boot

The sticking point for millions of perfectly capable PCs is Microsoft’s hard floor for Windows 11: an 8th-gen Intel Core CPU or AMD Ryzen 2000 series or newer, plus TPM 2.0 and Secure Boot. TPM 2.0 is a dedicated security chip (or firmware-based fTPM) that stores encryption keys and credentials. Secure Boot ensures the PC only runs trusted software during startup.

When you run the PC Health Check app—Microsoft’s official compatibility checker—it often slaps a red X on hardware that lacks TPM 2.0 or Secure Boot, even if the CPU is powerful enough. The rejection message can be confusing: many modern PCs have TPM 2.0 but it’s disabled in BIOS. Users must enable “PTT” on Intel systems or “fTPM” on AMD, then turn on Secure Boot, before the checker gives a green light.

For older machines, no amount of BIOS tweaking helps. The hardware simply doesn’t have TPM 2.0. Yet these PCs—still running fine with SSDs and 16GB of RAM—are forced into retirement by Microsoft’s artificial barrier. The company argues that the requirements improve security against ransomware and firmware attacks, which is valid—but critics point to the environmental waste and forced upgrade cycles.

Rufus to the Rescue: Installing Windows 11 on Unsupported PCs

Enter Rufus, the free, open-source USB creation tool that has become the darling of the unsupported-PC crowd. Rufus (version 4.x) can flash a Windows 11 ISO onto a USB drive while patching the installation to bypass TPM 2.0, Secure Boot, and even the 4GB RAM requirement. It also can skip the Microsoft account requirement, allowing a local account setup.

The process is straightforward:
1. Download the Windows 11 ISO from Microsoft’s official site.
2. Launch Rufus (run as administrator).
3. Select the USB drive (at least 8GB) and the ISO file.
4. Under “Image option,” choose “Standard Windows installation.”
5. In the “Partition scheme,” select “GPT” (for UEFI) or “MBR” (for legacy BIOS, though UEFI is preferred).
6. Click “Start.” Rufus presents a customization dialog. Check boxes such as:
- Remove requirement for 4GB+ RAM, Secure Boot, and TPM 2.0
- Remove requirement for an online Microsoft account (creates a local account)
- Disable data collection (skips privacy questions)
7. Confirm and let Rufus create the bootable USB.

Boot the target PC from the USB, and the Windows 11 installer will no longer enforce hardware checks. The installation proceeds normally, and you can choose an in-place upgrade (keeping files) or a clean install. After setup, Windows 11 activates with the existing Windows 10 digital license.

Several caveats apply. First, Microsoft may watermark the desktop with “System requirements not met. Go to Settings to learn more.” This appeared in Windows 11 version 22H2 and persists in 24H2; it’s a cosmetic annoyance but does not affect functionality. Second, certain updates—especially feature updates like 24H2—may install without full compatibility checks, but Microsoft reserves the right to withhold security updates from unsupported hardware in the future. So far, that hasn’t happened, but the risk looms.

Third, drivers can be an issue. Older hardware might not have optimized drivers for Windows 11, leading to performance dips or missing features. Wi-Fi, graphics, and touchpad drivers from Windows 10 often work, but you may need to manually hunt down vendors’ legacy support pages.

Risks and Caveats: What the Community Says

On Windows forums, the unsupported-upgrade discussion is a lively mix of success stories and cautionary tales. A common thread: users with Intel 6th and 7th-gen CPUs report that Windows 11 24H2 runs smoothly, but some experience random stutters or delayed startup. Those with AMD Ryzen 1000 series occasionally face USB dropout issues.

Gamers, in particular, tread carefully. Windows 11’s tighter integration with DirectStorage and Auto HDR relies on newer GPU and CPU features; older rigs may not see the gaming improvements touted by Microsoft. In some benchmarks, frame rates drop by 5–10% compared to Windows 10 on the same hardware.

Another hot topic is Secure Boot and TPM 2.0 bypass when using Rufus. Some antivirus tools and banking apps check for these features and may refuse to install or run on a “non-compliant” system. For example, a widely used anti-cheat software for competitive games may flag the lack of Secure Boot as a vulnerability and prevent the game from launching.

Security-conscious users note that running an unsupported PC means you’re accepting a baseline of lower security. Windows 11 with a TPM 2.0 chip enables features like Credential Guard and BitLocker by default on certain editions. Without TPM 2.0, these protections are not available, leaving data more exposed to theft or ransomware.

Despite the warnings, the Rufus method is often the only way for budget-conscious users to keep their hardware out of the landfill. Environmental arguments aside, the practical reality is that a well-maintained Windows 10 PC with an SSD and sufficient RAM can serve everyday computing needs for years—if only Microsoft’s arbitrary cutoff allowed it.

The Future After Windows 10: Should You Upgrade or Move On?

If your PC meets Windows 11 requirements, the upgrade is a no-brainer in 2026. Security updates alone make it worth the effort. The OS has matured significantly since its launch; version 24H2 brings a refined Start menu, File Explorer tabs, and better Snap layouts. Performance tweaks have narrowed the gap with Windows 10 on identical hardware.

For users on unsupported hardware, the decision isn’t black and white. Here’s a practical framework:

  • If your PC is primarily offline or used for non-sensitive tasks (media streaming, office work with local files), the Rufus bypass with Windows 11 is a reasonable gamble. The security risk is lower without constant internet connection.
  • If you handle sensitive data, consider switching to a supported operating system. Linux distributions like Ubuntu, Linux Mint, or Zorin OS offer a Windows-like experience with active security support and no hardware cutoffs. They’re free and can be tested live from a USB before installing.
  • If you’re a gamer, check compatibility lists for your key titles. Some online multiplayer games now require TPM 2.0 and Secure Boot as part of their anti-cheat measures. For single-player gaming, the bypass often works fine, but upcoming titles may drop Windows 10 support entirely.
  • Enterprises should avoid unsupported bypasses for compliance and security reasons. ESUs for Windows 10 are expensive but provide a bridge until hardware refresh cycles kick in.

Microsoft’s long-term strategy is clear: push everyone to Windows 11 and the Copilot+ PC era. Rumor mills suggest that Windows 12 (or a major Windows 11 refresh) is on the horizon, with a heavy focus on AI features that demand NPU hardware. The TPM requirement is just the first step in a shift towards platform security that will define PC hardware for the next decade.

Real-World Upgrading: A Step-by-Step Guide for 2026

For those ready to take the plunge, here’s a consolidated walkthrough regardless of hardware compatibility.

Check Compatibility (Official Route)

  1. Download and run the PC Health Check app from Microsoft.
  2. Review results. If “This PC can run Windows 11,” proceed to Windows Update.
  3. If the app says no, open your BIOS/UEFI (usually by pressing DEL or F2 during boot) and enable TPM (PTT or fTPM) and Secure Boot. Re-run PC Health Check.
  4. If still incompatible, note your CPU model and motherboard. Check manufacturer specs for TPM 2.0 support. Many Intel 6th/7th-gen CPUs lack it entirely.

Upgrade via Windows Update (Compatible PCs)

  1. Go to Settings > Windows Update and click “Check for updates.”
  2. The “Upgrade to Windows 11 is ready” option appears. Click download and install.
  3. Follow prompts, accept license terms, and keep files and apps.
  4. PC restarts several times. Post-upgrade, run Windows Update again for the latest cumulative update.

Upgrade Unsupported PC with Rufus

  1. On a working Windows PC, download the Windows 11 ISO from Microsoft’s website.
  2. Download Rufus from rufus.ie (version 4.5 or later).
  3. Plug in a USB flash drive (at least 8GB, backed up).
  4. Launch Rufus, select the USB drive and ISO. Choose GPT partition scheme for UEFI (recommended).
  5. Click Start, then in the customization window, select all bypass options: TPM, Secure Boot, RAM, Microsoft account.
  6. Once Rufus finishes, insert the USB into the unsupported PC. Boot from it (adjust boot order in BIOS).
  7. Select “Install Now.” Choose “Upgrade: Install Windows and keep files, settings, and applications” to perform an in-place upgrade, or “Custom” for a clean install.
  8. Follow the installer. When prompted for a key, click “I don’t have a product key.” Windows will activate automatically from the digital license.
  9. After installation, the “System requirements not met” watermark may appear. It can be ignored, but if it bothers you, registry edits exist (use at your own risk).
  10. Update drivers via Windows Update and manufacturer websites.

Post-Upgrade To-Dos

  • Check Device Manager for missing drivers.
  • Run Windows Update repeatedly until no new updates appear.
  • Verify Windows activation (Settings > System > Activation).
  • Reinstall applications that may not have survived, especially security software.
  • Create a system restore point or full backup.

The Environmental and Ethical Angle

The forced obsolescence baked into Windows 11’s requirements isn’t just a user frustration—it’s an environmental problem. Millions of perfectly functional PCs are being discarded because they lack a security chip. E-waste is the fastest-growing solid waste stream globally. By using workarounds like Rufus, users extend the life of hardware, reducing demand for new devices and the associated carbon footprint.

Microsoft’s sustainability pledges ring hollow when perfectly capable hardware is artificially barred from receiving updates. While the security rationale is sound, a more nuanced approach—such as requiring TPM 2.0 but grandfathering older CPUs with a “reduced security” warning—would have been less wasteful.

The free upgrade offer staying open is a small olive branch, but it’s not enough. Advocacy groups urge Microsoft to lower the CPU floor to at least 6th-gen Intel and Zen 1 AMD, which would cover many machines without sacrificing a reasonable security baseline.

What’s Next for Windows 11 and Beyond

Looking ahead, the upgrade landscape will continue to evolve. Windows 11 25H2 (expected in late 2025) may tighten integration with Copilot and require newer hardware for some AI features, but the core system requirements likely won’t change mid-stream. The next major OS, whether called Windows 12 or something else, will almost certainly demand TPM 2.0 and likely a neural processing unit (NPU) for AI tasks, so the hardware gatekeeping is only going to intensify.

For Windows 10 holdouts in 2026, the clock is ticking louder. Even the Rufus bypass won’t protect against the day Microsoft decides to block security updates for unsupported configurations. The free upgrade is the last, best chance to move forward without paying—and it won’t last forever. When the next Windows version arrives, the free ride may finally end.

In the meantime, communities on Reddit, TenForums, and other enthusiast sites continue to share tips, scripts, and unofficial patches to keep old machines running. The collective knowledge is a testament to the Windows ecosystem’s resilience—and a reminder that users often find ways around corporate fences.