Microsoft just added the ability to ๐๐ข๐ฌ๐๐๐ฅ๐ ๐ ๐ซ๐จ๐ฎ๐ฉ ๐ง๐๐ฌ๐ญ๐ข๐ง๐ for groups in Microsoft Entra > https://t.co/5jsqPCxrj9
It's very new, can only be set during group creation and I cannot see any documentation on Microsoft Learn about this yet outside of the Graph API permission reference, but it was caught by my MsDocsTracker!
Very useful for groups that protect sensitive applications or resources where you want every member to be added directly. Check out my article linked above to enable the disableNesting property for groups!
#Entra #News #Microsoft
Microsoft Entra ID dropped 3 important updates this week that advance its passwordless-first strategy:
1๏ธโฃ SSPR CAPTCHA replaced with behavior-based bot detection
2๏ธโฃ Passwordless password change in My Sign-Ins
3๏ธโฃ Temporary opt-out API for passkeys-by-default
Here's what IT admins need to know ๐งต
The Intune Sync button is finally getting a real upgrade.
It will now (yes now!!) trigger the regular MDM policy check-in and also wake up the Intune Management Extension (IME) workloads, such as Win32 apps, PowerShell scripts, and Remediations.
The best thing? The Win32 app part is already in production!
https://t.co/yVuFVOlZ6I
#Intune #MSIntune @IntuneSuppTeam
This is a much needed role! No need to multiple low priv or one high priv role anymore. This allows for the right visibility and response capabilities.
๐ ๐ฉ๐ถ๐๐ต๐ถ๐ป๐ด ๐ฎ๐ฐ๐๐ผ๐ฟ๐ ๐๐ฎ๐ฟ๐ด๐ฒ๐ ๐๐ป๐๐ฟ๐ฎ ๐ฝ๐ฎ๐๐๐ธ๐ฒ๐ ๐ฒ๐ป๐ฟ๐ผ๐น๐น๐บ๐ฒ๐ป๐
On 06 July 2026, Okta Threat Intelligence article shared a threat actor tracked as O-UNC-066 (also known as "Pink" by Palo Alto Networks Unit 42) has deployed a panel-controlled phishing kit targeting the passkey enrollment process for Microsoft 365 customers.
https://t.co/hJHW9Tes1d
Using Silent Push context graph search and pivoting on their common DNS nameservers infrastructure, additional passkey related domains that was uncovered and not shared in the Okta Intelligence Report. With these new additional passkey related domains gathered I have build a KQL detection for this Passkey Enrollment phishing detection for O-UNC-066. Fellow defenders can access the shared code at https://t.co/TKwVrjaSF8 SLimKQL2026.๐ซก
https://t.co/gs3Pg2daqJ
#UNC66 #PasskeyEnrollmentPhishing #ThreatDetection
๐จ Hackers are using fake #Microsoft Entra passkey pages to target Microsoft 365 accounts.
The vishing campaign steals credentials and MFA responses, then attempts to register attacker-controlled passkeys while adapting to prompts in real time.
Read how the attack works: https://t.co/Fau7qSUemw