Microsoft Entra ID security updates: Passkeys are the default authentication method in Entra ID
2026-07-13T20:52:16Z•1138b8c04e9022011fa69b1b80038d735b81b771d1b2c119975ec45d533ab582
AI-agent-poisoningAI-securityCSPMEntra IDGigaWiperMFASFISMSauthenticationcloud-securitydestructive-malwareidentityincident-responsemalware-analysispartner-securitypasskeyspost-quantumquantum-saferansomwaresecure-future-initiativethreat-detectiontool-poisoningvoice-authentication
What happened
This Microsoft Security Blog collection highlights identity and cloud security updates and active threat intelligence. Key items: Microsoft Entra ID now makes passkeys the default sign-in method and introduces a new SMS/voice authentication model with guidance to prepare; Microsoft’s Secure Future Initiative (SFI) progress and AI-speed hardening of cloud services; a detailed analysis of GigaWiper, a destructive backdoor built from multiple malware families with detection and mitigation guidance; emerging risks including AI-agent (MCP) tool poisoning and recommendations to defend AI-driven tool
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- microsoft_security_blog
- Record identifier
- 1138b8c04e9022011fa69b1b80038d735b81b771d1b2c119975ec45d533ab582
- Enrichment time
- 2026-07-13T20:52:16Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.