Microsoft to roll out Entra passkeys on Windows in late April
Summary
Microsoft is introducing passkey support for its Entra ID (formerly Azure AD) service on Windows devices in late April. This feature aims to provide phishing-resistant, passwordless authentication for users accessing Entra-protected resources.
IFF Assessment
The rollout of passkey support is a positive development for defenders as it offers a more secure and phishing-resistant alternative to traditional passwords.
Defender Context
This advancement in passwordless authentication can significantly reduce the risk of credential stuffing and phishing attacks by eliminating reliance on easily compromised passwords. Defenders should plan for the adoption of passkeys and ensure their identity and access management systems are compatible and properly configured to leverage this enhanced security measure.