COMMAND.EXE

> Search or run a command

Commands: home latest search topic popular sudo surprise-me dark light subtle geek full geek rss status about

Ctrl + K search · / search · D dark mode · Esc close

TAG

#Conditional Access

3 articles

Microsoft Entra ID: The Security Controls I Would Enable First
Cybersecurity

Microsoft Entra ID: The Security Controls I Would Enable First

If you are tightening up Microsoft Entra ID security, the first wins are usually not exotic: they are the controls that reduce password abuse, shrink admin exposure, and stop legacy sign-in paths from becoming an easy route in. The trick is to turn on the right controls in the right order, without breaking sign-in for the people who keep the business running.

Cybersecurity

Entra ID’s move from SMS/voice MFA to passkeys: what breaks

Microsoft is steering Entra ID away from SMS and voice MFA and towards passkeys. The shift is security-led, but it’s operationally risky: recovery, Conditional Access interactions, legacy apps, and helpdesk load can all change the outcome.

Cybersecurity

Entra ID passkeys become default as SMS/voice MFA retires

Microsoft will make passkeys the default sign-in method in Entra ID from 1 September 2026 and retire Microsoft-provided SMS and voice delivery on 1 February 2027. The key risk is strand-through: recovery and helpdesk flows that still assume telecom MFA.