Saudi Press

Saudi Arabia and the world
Thursday, Mar 28, 2024

Microsoft's passwordless plans lets users switch to app-based login

Microsoft's passwordless plans lets users switch to app-based login

Microsoft has announced users can now delete all passwords from their accounts and instead login using an authenticator app or other solution.

The technology giant made passwordless accounts available for business users of its products in March.

And that system is now being made available to all Microsoft or Windows users.

It said "nearly 100% of our employees" were already using the new, more secure system for their corporate accounts.


If passwordless login is enabled, users re-logging in to a Microsoft account will be asked to give their fingerprint, or other secure unlock, on their mobile phone.

And this is far more secure than using passwords, which can be guessed or stolen, according to Microsoft.

"Only you can provide fingerprint authentication or provide the right response on your mobile at the right time," it said.

Windows users will still be able to use quick-login features such as a Pin code, though.

Some rare exceptions will still need passwords, such as Office 2010, Xbox 360 consoles, and Windows 8.1 or earlier machines.

And if access to the authenticator app is lost - for example, if the phone it is installed on is lost or stolen or a user forgets when upgrading - backup options can be used, including:

*  Windows Hello facial recognition, which requires a compatible laptop or special camera
*  a physical security key, which must be used on the device logging in
*  Short Message Service (SMS) or email codes

But SMS and email are two of the most common channels for cyber-criminals targeting specific individuals

And Microsoft says security-conscious users who have two-factor authentication set up will need to have access to two different recovery methods.

Microsoft's messaging tells customers no passwords are more secure

Prof Alan Woodward, part of a research team investigating passwordless authentication, at the University of Surrey, called it "quite a bold step from Microsoft".

"This isn't just logging into PCs, it's logging into online services as well" - including important ones such as cloud storage, he said.

Microsoft laid out its reasons for the new system in a series of blog posts.

Security vice-president Vasu Jakkal wrote: "Passwords are incredibly inconvenient to create, remember, and manage across all the accounts in our lives.

"We are expected to create complex and unique passwords, remember them, and change them frequently - but nobody likes doing that."

The separate authenticator app - not pictured in this stock photo - is claimed to be more secure than a password

Instead, people tended to create insecure passwords that technically cleared the bar for using symbols, numbers or case sensitivity - but in order to remember them, used a repeated formula or the same password on multiple websites.

And that led to hackers guessing them or revealing them in a data breach and reusing them.

"Hackers don't break in, they log in," the blog post read.

'Pummelled home'


The new passwordless feature greets users with a box saying: "A passwordless account reduces the risk of phishing and password attacks."

And once the feature is set up, a confirmation tells users: "You have increased the security of your account and improved your sign-in experience by removing your password".

Microsoft's claims about poor password use were largely true, Prof Woodward said.

"The message has been pummelled home about what good password hygiene looks like - but it's easier said than done," he said.

Passwords were a decades-old concept "and maybe the time is now right to start looking for something different".

But there were no currently agreed standards.

"There are a number of different ways this could be done - and it would be good if everybody moved on, really, and tried to find a way of doing this," Prof Woodward said.

Newsletter

Related Articles

Saudi Press
0:00
0:00
Close
Reports in Gaza: 5 dead from the impact of aid packages dropped by the USA
Apple warns against drying iPhones with rice
China Criticizes US for Vetoing UN Ceasefire Resolution in Gaza
In a recent High Court hearing, the U.S. argued that Julian Assange endangered lives by releasing classified information.
The U.S. vetoed a U.N. Security Council resolution calling for a temporary ceasefire in Gaza, instead proposing its own six-week ceasefire plan contingent upon the release of all hostages held by Hamas
Prince William Urges End to Gaza Conflict
Saudi Arabia ranks first in UN index for e-government services in MENA
Israel has gone ‘beyond self-defence’ in Gaza, says Labour’s Streeting
EU Calls for Immediate Ceasefire in Gaza Conflict
Israel Records 20% Drop In GDP, War In Gaza Is The Reason
Saudi Arabia's FDI Inflows Grow with New International Standards
Venture Capitals Power Up Across MENA Region
Saudi Arabia Introduces Terms for 30-Year Income Tax Exemption for Multinational Companies
Saudi FM: Establishing Palestinian state is only pathway for Mideast stability
Russian opposition leader Alexey Navalny has died at the Arctic prison colony
Elon Musk's Starlink Gets License For Israel, Parts Of Gaza
Influencers Exploit X Platform for Profit Amidst Israel-Gaza Conflict
PM Modi Announces Opening Of New CBSE Office In Dubai
International Criminal Court's Chief "Deeply Concerned" By Rafah Bombing
January Funding for MENA Startups Totals $86.5 Million
Saudi Arabia accelerates digital economy growth through Nvidia partnership
Indian female military officers commend Saudi Arabia's progress and women's empowerment
Israel unveils tunnels underneath Gaza City headquarters of UN agency for Palestinian refugees
Israel deploys new military AI in Gaza war
Egypt threatens to suspend key peace treaty if Israel pushes into Gaza border town, officials say
Israel Utilizes AI Military Technology in Gaza Conflict
Saudi Arabia Warns Of A "Humanitarian Catastrophe" If Israel Moves On Rafah
China Warns Iran to Halt Houthi Attacks or Damage Trade Ties
US University To Shut Qatar Campus Due To "Heightened Mideast Instability"
Iran-backed hackers interrupt UAE TV streaming services with deepfake news
Facebook and Instagram Ban Iran's Supreme Leader
Finnish Airline, Finnair, is voluntarily weighing passengers to better estimate flight cargo weight
U.S. Secretary of State Blinken: The Israelis underwent dehumanization on 7.10, this does not give them the right to do this to others.
Defense Technology Showcase Held in Riyadh
Saudi Arabia’s non-oil exports rise 2.5% to $6bn in November 2023: GASTAT
UK Bans Misleading "Zero Emissions" Claims for Electric Cars
Gaza's Teen Inventor Sparks Light in Displacement
Netanyahu Rejects Ceasefire Proposal, Insists On Total Victory Over Hamas
Guterres appoints independent UNRWA review panel
Private Sector Employment Hits Record High with Over 11 Million Employees in January
Rolls-Royce Executive Encourages Saudi Women to Tap into Their Inner 'Superhero' for Success in Defense Industry
Saudi Arabia launches National Academy of Vehicles and Cars
Saudi Tourism Minister Reveals Plan for 250,000 New Hotel Rooms by 2030
SAR to more than double eastern network passenger capacity with new trains deal
Saudi Arabia Enhances National Defense with New Partnerships
Saudi Aramco Maintains Arab Light Crude Pricing to Asia for March
NEOM Establishes New York Office to Support Investors
Saudi Wealth Fund Draws in Over $25 Billion Worth of Investments in Three Years, Al-Rumayyan Reveals
ZATCA Cautions Against Scammer Schemes
INTRA Defense Technologies inaugurates drone factory in Riyadh
×