Hello!
I’m running Windows 11 Home Edition 25H2, but the problem it’s also happening on Windows 11 Pro on another PC on the same home network. I’m using the latest version of Norton 360 Premium.
I’m having problems with Remote Access Protection being disabled and then Intrusion Signatures being disabled. It seems that Norton resolves it, but with a two-hour interval, which leaves my system vulnerable. I don’t know what’s happening, can anyone help?
Femapisa:
I’m running Windows 11 Home Edition 25H2, but the problem it’s also happening on Windows 11 Pro on another PC on the same home network. I’m using the latest version of Norton 360 Premium.
I’m having problems with Remote Access Protection being disabled and then Intrusion Signatures being disabled. It seems that Norton resolves it, but with a two-hour interval, which leaves my system vulnerable. I don’t know what’s happening, can anyone help?
Hello @Femapisa
Norton Security 26.7 for Windows is now available!
==========
Your report seems similar to reports from other Norton users where Security History shows “Remote Access Protection Disabled” or “Intrusion Signatures Disabled,” but the actual protection components remain enabled.
The first thing to check is whether Norton’s main dashboard still shows “You Are Protected” and whether the relevant settings remain enabled under Intrusion Prevention . If those are enabled, the Security History entries are likely a reporting/status synchronization issue rather than Norton actually leaving the system unprotected.
Since you are seeing it on two Windows 11 PCs, please provide the exact Norton version/build from Settings > About and note whether the entries appear after startup, after LiveUpdate, or at random times. That will help determine if this matches the known 26.x reporting issue.
At this point, I would not assume your system is vulnerable solely from those Security History entries if Norton is otherwise reporting healthy protection.
The “Intrusion Signatures Disabled” and “Remote Access Protection Disabled” entries you see in your Security History are a known cosmetic logging error , not an indication that your protection is actually turned off. This is a display bug that has been present in recent versions, but it does not compromise your security .
Why This Happens
Timing Glitch: During startup or updates, the Norton interface (which writes the history log) runs slightly faster than the protection engines fully initialize.
False Report: The log captures a split-second “off” state that lasts only milliseconds, creating a “Disabled” entry even though the protection is instantly active.
No Real Risk: Your kernel-level drivers (the actual security engines) are among the first things to load and remain active the entire time.
How to Confirm You Are Protected
Ignore the Security History for these specific items. Instead, check:
The Main Dashboard: If the big circle is Green and says “You Are Protected,” your system is secure.
Settings Menu: Go to Settings > Intrusion Prevention . If the toggles are On , your protection is active.
Bottom Line
This is a logging anomaly , not a functional failure. Norton engineers classify it as a low-priority cosmetic issue because it has no impact on your actual defense against threats. You do not need to reinstall, reset, or contact support unless your Main Dashboard shows a warning.
Your system is safe. The “Disabled” messages are simply a harmless glitch in the reporting system.
I’ve seen the same type of Security History entries for quite a while and have treated them as a reporting issue rather than an actual protection failure.
The important distinction is whether Norton is showing the features as disabled in the actual settings or whether this is only appearing as a Security History entry. If the Norton dashboard remains green and Intrusion Prevention/Remote Access Protection settings are still enabled, the entry appears to be a logging/status synchronization issue.
Since you are seeing this on two Windows 11 systems, it would be useful to know the exact Norton version/build and whether the entries occur after boot or after a LiveUpdate. That may help confirm whether this is the same long-standing 26.x behavior others have seen.
==========
==========
==========
==========
AI sourced content may make mistakes
fwiw ~ as test:
===================================================
====================================================
Hi!
Thank you BJM for your reply.
As you can see, everything is active in Norton and it’s confirmed that I am protected, just three options, that I only just realized they’re turned off which I think are not the most essential.
1 Like
Norton AI Agent Protection , currently in beta, is a new feature of Norton 360 that empowers users to experiment with AI agents while reducing associated security risks . It adds a real-time checkpoint between what an AI agent decides to do and what it actually executes. This gives you more visibility and control over what your agent is doing on your device.
[…]
FAQs
https://us.norton.com/blog/ai/ai-agent-protection-norton-360
Norton AI Agent Protection is a real-time cybersecurity feature built into Norton 360 designed to monitor, audit, and secure autonomous AI agents operating on your personal device. As AI tools move from answering simple questions to autonomously executing code, filling out forms, or modifying files, they gain significant access to your operating system.
Norton introduces a dedicated “Agent Trust Layer” that intercepts an AI agent’s decisions before they are executed, mitigating the risks of rogue automation or compromised instructions.
Core Capabilities
Safe AI Execution Checkpoints: It serves as a real-time gateway between what an AI agent decides to do and what it actually executes on your system.
Three-Tier Action Enforcement: Every command is analyzed against 300+ local detection rules, resulting in one of three responses:
Allow : Safe actions proceed without any disruption.
Ask : Suspicious activities are paused so you can manually review or deny them.
Deny : Clear threats are blocked automatically.
Targeted Threat Defense: It actively scans for prompt injections (where external text malicious steers the AI), hidden credential leaks, unsafe dependency downloads, and malicious system or registry changes.
Supported Environments: The capability seamlessly integrates with popular development and agentic frameworks, including Claude Code, Cursor, and OpenClaw.
The feature is bundled with active Norton 360 plans. It originally rolled out as a beta feature for Windows users, with Mac support following closely behind.
AI sourced content may make mistakes