Microsoft Entra ID security updates: Passkeys are the default authentication method in Entra ID

2026-07-13T20:52:16Z1138b8c04e9022011fa69b1b80038d735b81b771d1b2c119975ec45d533ab582
AI-agent-poisoningAI-securityCSPMEntra IDGigaWiperMFASFISMSauthenticationcloud-securitydestructive-malwareidentityincident-responsemalware-analysispartner-securitypasskeyspost-quantumquantum-saferansomwaresecure-future-initiativethreat-detectiontool-poisoningvoice-authentication

What happened

This Microsoft Security Blog collection highlights identity and cloud security updates and active threat intelligence. Key items: Microsoft Entra ID now makes passkeys the default sign-in method and introduces a new SMS/voice authentication model with guidance to prepare; Microsoft’s Secure Future Initiative (SFI) progress and AI-speed hardening of cloud services; a detailed analysis of GigaWiper, a destructive backdoor built from multiple malware families with detection and mitigation guidance; emerging risks including AI-agent (MCP) tool poisoning and recommendations to defend AI-driven tool

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
microsoft_security_blog
Record identifier
1138b8c04e9022011fa69b1b80038d735b81b771d1b2c119975ec45d533ab582
Enrichment time
2026-07-13T20:52:16Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Microsoft Entra ID security updates: Passkeys are the default authentication method in Entra ID · Baitaphish