Microsoft retires SMS-based sign-in for Entra ID, requires passkey migration

Microsoft announced on September 21, 2026, that it will retire SMS first-factor sign-in for Microsoft Entra ID workforce tenants worldwide on February 1, 2027, requiring organizations to migrate users to phishing-resistant authentication methods like passkeys. The deadline gives administrators several months to complete the transition.

5 reports · 3 independentother · tech

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

Microsoft to block Entra SMS first-factor sign-ins worldwide in February 2027

kite:cybersecurityother8d ago kagi ↗

Microsoft will retire SMS first-factor sign-in for Microsoft Entra ID workforce tenants worldwide on February 1, 2027, requiring organizations to migrate affected users before that date [cybersecuritynews.com#1][bleepingcomputer.com#1]. The change will block sign-ins that use a registered phone number and SMS one-time passcode as the primary authentication method. Existing configurations will no l

Microsoft has reminded administrators to migrate Entra ID users to phishing-resistant methods, such as passkeys, to avoid sign-in disruptions after it retires SMS first-factor sign-in starting in Febr

mastodon:infosec-exchangeother7d ago kagi ↗

Microsoft has reminded administrators to migrate Entra ID users to phishing-resistant methods, such as passkeys, to avoid sign-in disruptions after it retires SMS first-factor sign-in starting in February 2027. https://www. bleepingcomputer.com/news/micr osoft/microsoft-reminds-admins-to-migrate-entra-id-users-to-passkeys/