Share this article
Latest news
With KB5043178 to Release Preview Channel, Microsoft advises Windows 11 users to plug in when the battery is low
Copilot in Outlook will generate personalized themes for you to customize the app
Microsoft will raise the price of its 365 Suite to include AI capabilities
Death Stranding Director’s Cut is now Xbox X|S at a huge discount
Outlook will let users create custom account icons so they can tell their accounts apart easier
Microsoft Azure will introduce mandatory multi-factor authentication (MFA) in a bid to stop cyberattacks
The rollout for the new authentication method will start in October.
2 min. read
Updated onAugust 28, 2024
updated onAugust 28, 2024
Share this article
Read our disclosure page to find out how can you help Windows Report sustain the editorial teamRead more
Microsoft has announced a significant shift in its security protocol for Azure users. Starting this October, the tech giant will begin enforcing mandatory multi-factor authentication (MFA) for accessing the Azure portal, Microsoft Entra admin centre, and Intune admin centre.
This decision isn’t just a whim; it’s a calculated move to combat the ever-increasing threat of account compromise attacks.Microsoft’s data showsthat MFA can block over 99.2% of these attacks.
Ensuring Azure accounts are protected with securely managed, phishing-resistant multifactor authentication is a key action we are taking. As recentresearch by Microsoftshows that multifactor authentication (MFA) can block more than 99.2% of account compromise attacks, making it one of the most effective security measures available, today’s announcement brings us all one step closer toward a more secure future.
If you’re wondering whether this will affect you immediately, the answer is that it might not. Microsoft plans to roll this out gradually, so if you don’t get prompted for MFA immediately, don’t sweat it.
However, it’s only a matter of time before this becomes the new norm. It’s also worth mentioning that Phase 2 of this rollout, expected early next year, will extend MFA requirements to Azure CLI, Azure PowerShell, the Azure mobile app, and Infrastructure as Code (IaC) tools.
Microsoft is giving a heads-up with a 60-day advance notice to Entra global admins and through Azure Service Health Notifications. The company is also open to extending the timeframe for organizations that might find this transition difficult due to complex environments or technical hurdles.
Several MFA options will be available. They range from the Microsoft Authenticator app, which allows sign-ins via push notifications, biometrics, or one-time passcodes, to more advanced methods like FIDO2 security keys and certificate-based authentication.Passkeys for phishing-resistant authenticationand, as a last resort, SMS or voice approvals will also be available to users.
Microsoft is serious about beefing up security and is not taking any half-measures. The Redmond-based tech giant recommends taking time to start planning for compliance to avoid disruptions in business operations.
You can read more about the new Microsoft Azure MFA authentication methodhere.
More about the topics:Cybersecurity,microsoft
Flavius Floare
Tech Journalist
Flavius is a writer and a media content producer with a particular interest in technology, gaming, media, film and storytelling.
He’s always curious and ready to take on everything new in the tech world, covering Microsoft’s products on a daily basis. The passion for gaming and hardware feeds his journalistic approach, making him a great researcher and news writer that’s always ready to bring you the bleeding edge!
User forum
0 messages
Sort by:LatestOldestMost Votes
Comment*
Name*
Email*
Commenting as.Not you?
Save information for future comments
Comment
Δ
Flavius Floare
Tech Journalist
Flavius is a writer and a media content producer with a particular interest in technology, gaming, media, film and storytelling.