Microsoft has updated its Windows Local Administrator Password (LAPS) solution by adding support for Microsoft Entra ID (formerly "Azure Active Directory") and Microsoft Intune. The Entra ID and ...
A mis-scoped Agent ID Administrator role in Entra ID allowed users to take ownership of unrelated service principals, ...
Actor tokens allowed cross-tenant impersonation without logging or security checks CVE-2025-55241 enabled Global Admin access via deprecated Azure AD Graph API Microsoft patched the flaw in September ...
Agent ID Administrator enabled service principal takeover before April 9, 2026 patch, exposing privilege escalation risk in ...
Microsoft is rolling out passkey support for Microsoft Entra on Windows devices, adding phishing-resistant passwordless authentication via Windows Hello. The feature is opt-in and will enter public ...
Microsoft this week announced an expansion of its Security Copilot assistant across Microsoft Entra and Intune, which includes new AI-powered features aimed at managing endpoints and ID infrastructure ...
Not all Windows updates are security updates, but even scheduled cumulative updates that add new features to the operating system platform sometimes impact security areas. Take, for example, the ...