The images in this article were generated with artificial intelligence. How we publish
Microsoft has started to deploy on the Windows Insider Experimental channel a modernized version of the Run + R dialog in the 26300.8346 compilation: a redesign that respects the historical simplicity of the tool but adapts it to Fluent Design, adds native support for dark mode and promises even less response time than the classic dialogue.
The Run is one of those small but fundamental utilities for many advanced users: it allows you to launch commands, open routes or pass text from the clipboard immediately without invoking the File Explorer. Microsoft claims to have measured its use in a huge sample of sessions to not break what works: the new design retains the minimum interface, incorporates icons to facilitate input identification and adds shortcuts as ~\\ to quickly access the user directory, but has removed the button Browse after finding that its use is practically marginal.

In terms of performance, the numbers reported by the company are interesting because they challenge a common prejudice: "modern" interfaces are often slow. According to Microsoft, the inherited dialogue showed a median latency of about 103 m after pressing Win + R, and the new version reduced that time to about 94 m. You can read the team explanation on your technical blog on Microsoft DevBlogs: The new Run dialogue: faster, cleaner and more capable.
These changes do not come alone: the same Experimental update introduces improvements in the sharing interface for AAD accounts, allowing to install apps directly from the Sharing dialog, and Lupa settings with more fine pre-defined zoom levels. A summary of this iteration and its technical coverage can be found in specialized media such as BleepingComputer: Windows 11 modern Run dialogue gets dark mode, faster performance.

From a privacy and management perspective, two points should be highlighted: Microsoft admitted that it added a temporary measure to understand "what is used" and measure the time of the dialogue, which raises the question about telemetry and use data collected. Managers and users concerned about telemetry should review the diagnostic and privacy policies of their equipment and, in corporate environments, assess the compatibility before allowing the experimental channel to be updated.
For users who want to try or avoid change, Microsoft indicates that the modern experience is optional and is activated from Settings > Advanced Settings, where you can enable or disable the replacement of the classic Run by the modern one. If you work in critical environments or with flows that depend on the option to explore from Run, it is prudent to test on non-productive machines and document the reversal procedure before you deploy it massively.
My practical recommendation: if you are curious or developer, join the Experimental channel and try the new Run, but do it first on a test team; use the Feedback Hub to report unexpected behaviors; administrators should validate telemetry policies, create internal guidelines on change and postpone deployment to production teams to the stable public exit. Keep an eye on future compilations because Microsoft has already said it plans to iterate on functionalities and performance before widespread deployment.
Related
More news on the same subject.

Anonymous MousKIT phishing platform identified to remove Activation Lock on iPhone and iPad
Cybersecurity researchers have documented a phishing platform as a service aimed at eliminating the protection of Activation Lock from stolen iPhones and iPads, combining forged...

United States U.S. imposes sanctions on Iranian networks linked to MOIS and Mabna in the Economic Outcast operation
The U.S. Treasury Department has launched a new round of financial sanctions against networks linked to Iran, in a campaign that the U.S. authorities describe as a coordinated e...

NemoClaw operating chain exposes Olama to unauthenticated access and alters chat templates
What has happened (confirmed facts): Oasis Security researchers have published a report describing a chain of exploitation against the NemoClaw configuration that can allow a we...

CISA adds CVE-2026-21962 to KEV by remote operation in Oracle HTTP Server and WebLogic
The United States Agency for Cybersecurity and Infrastructure (CISA) has included in its catalogue Known Exploited Vulnerabilities (KEV) the critical failure traced as CVE-2026-...

IA in code generation accelerates OSS dependencies and generates security mediation debt
A recent seminar organized by ActiveState and a survey of 300 security and development leaders in companies in different sectors confirms something that many teams already notic...

They identify WordlistLoader and SynkLoader, intermediate loaders linked to access brokers for
Cybersecurity researchers have identified two new malware families - called WordlistLoader and SynkLoader - used as intermediate stages to deploy later loads and, according to p...

TikTok will pay 400 million for COPPA; 100 M subject to annulment of decree Musical.ly
The U.S. Department of Justice. United States announced payment of $400 million by TikTok to resolve a 2024 lawsuit that accused the platform - owned by ByteDance - of violating...