X
Microsoft Accounts Go Passwordless by Default
Mark Anderson | Security | May 2, 2025

Euclid Security Newsletter

May 2, 2025 

Microsoft Accounts Go Passwordless by Default

Microsoft is making a new push towards eliminating password-based authentication for its users, by prioritizing passwordless sign-in and sign-up methods.

 

Security News

Why World Password Day Is a Perfect Reminder to Up Your Security Game

As we celebrate World Password Day on May 1st, it's clear that traditional password tricks-like swapping "a" with "@" or adding an exclamation point at the end-are no longer fooling hackers.

Phone theft is turning into a serious cybersecurity risk

Stolen phones don't just go to local black markets. They often get funneled into larger criminal operations. For example, stolen phones can be used to bypass security features or be reprogrammed and resold.

The 3 biggest cybersecurity threats to small businesses

Without robust IT budgets or fully staffed cybersecurity departments, small businesses often rely on their own small stable of workers to stay safe online.

People know password reuse is risky but keep doing it anyway

35% of Gen Z said they never or rarely update passwords after a data breach affecting one of their accounts, according to Bitwarden. Only 10% reported always updating compromised passwords.

AirPlay Vulnerabilities Expose Apple Devices to Zero-Click Takeover

Vulnerabilities in Apple's AirPlay protocol and the accompanying SDK could allow attackers to take over devices, in some instances without user interaction, runtime protection firm Oligo Security says.

Microsoft fixes Exchange Online bug flagging Gmail emails as spam

​Microsoft has resolved an issue with a machine learning model that mistakenly flagged emails from Gmail accounts as spam in Exchange Online.

 

Important Updates & Patches

SonicWall Releases Security Updates

SonicWall has released critical security updates for multiple products. Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative privilege to inject arbitrary commands as a 'nobody' user, potentially leading to OS Command Injection Vulnerability.

 

Dan's Corner

Pinterest will now tell you when you're looking at AI-generated content

Pinterest is fighting back against the onslaught of AI slop that is increasingly clogging up its platform following complaints from users.

 

An archive of Euclid Security Newsletters can be found on the support website.

Euclid Technology Solutions, LLC
540 Devall Drive, Suite 301
Auburn, AL 36832

P: 301-657-8089
E: support@euclidtechnology.com

New Comment ...

Sort by: