An important and serious security flaw in Microsoft's Authenticator has now been discovered to allow hackers to steal sign-in tokens ...
Microsoft is working to address an ongoing incident preventing customers from setting up multi-factor authentication (MFA) or accessing the My Sign-Ins platform.
Microsoft is pulling the plug on SMS-based two-factor authentication because it has become a leading source of fraud, replacing it with passkeys and verified email.
Microsoft warns of a security vulnerability in Authenticator. Attackers can intercept sign-in tokens and gain access.