Goodbye SMS or phone calls — Microsoft is making passkeys the default authentication process for businesses

https://cdn.mos.cms.futurecdn.net/jiFBDhzqCxAkgFdQnekxzb-1920-80.png
  • Beginning September 1, 2026, passkeys will become the default for Entra ID
  • Microsoft is retiring SMS/phone call authentication from February 1, 2027
  • Victims are more likely to open AI-assisted phishing emails

Microsoft has confirmed plans to make passkeys the default or preferred authentication method for Entra ID beginning September 1, 2026, announcing further changes to account authentication in a bid to combat sophisticated attacks.

A few months later from February 1, 2027, the company will also stop providing its own SMS and voice call authentication codes for Entra ID in the hope that business users fully adopt passwordless sign-in.

While passkeys don't promise to totally stop attacks, they make phishing attempts far less effective because attackers would need access to victims' hardware to gain access.

Microsoft continues its drive for passkeys

While the company may be ending support for its own SMS and phone call authentication methods, passkeys won't be...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more