Microsoft will make passkeys the default authentication method for Microsoft Entra ID starting September 1, 2026. The change primarily affects businesses and organizations that use Entra ID to manage employee access. On February 1, 2027, Microsoft will stop providing SMS and voice call authentication codes, requiring customers to transition to other sign in methods. Microsoft says the changes respond to increasingly sophisticated phishing and account takeover attempts, including attacks that use AI to create more convincing messages. The company now considers SMS and voice multifactor authentication insufficient against modern phishing techniques. Passkeys instead use cryptographic credentials stored on a user’s device and linked to the legitimate service domain, making them much harder to steal through fake login pages. Organizations will still be able to use Windows Hello for Business, including biometric authentication, and FIDO2 security keys. Microsoft recommends identifying emplo...
Related
Microsoft Entra ID to default to passkeys, phasing out SMS and voice codes by 2027
Microsoft will make passkeys the default authentication method for Microsoft Entra ID starting September 1, 2026. The change primarily affects businesses and organizations that use...
Facebook launches free Verified badges to distinguish real users from AI bots
Facebook is introducing Facebook Verified, a free identity verification system designed to show that a real person is behind an account rather than an AI bot. This new feature resp...
Anthropic launches Claude Opus 5 with near-Fable performance at half the cost
Anthropic has launched Claude Opus 5, its latest advanced AI model for complex coding, agentic workflows, scientific research, and knowledge work. It replaces Opus 4.8 at the same ...