Microsoft has removed a key obstacle facing organizations seeking to deploy phishing-resistant multifactor authentication (MFA) by enabling certificate-based authentication (CBA) in Azure Active Directory. This comes as experts anticipate advanced phishing attacks will rise next year. “I think social engineering and MFA bypass attacks will continue to grow in 2023, where some other major service providers suffer meaningful breaches like we did this year,” Andrew Shikiar says.


More

PC Mag: RIP Passwords: Microsoft Moves to Passkeys as the Default on New Accounts

Anyone setting up a new Microsoft account will soon find they’re encouraged to use a passkey during…

Read More →

The Verge: Microsoft goes passwordless by default on new accounts

After supporting passwordless Windows logins for years and even allowing users to delete passwords from their accounts, Microsoft…

Read More →

BetaNews: Research confirms consumers are turning to passkeys to protect their accounts

As you’ll already know, today is World Passkey Day and the FIDO Alliance has released an independent study of…

Read More →