Entra IDMicrosoft’s November 2025 Entra updates focus on expanding identity security for AI agents and generative AI apps, including new preview features like Entra Agent ID, Prompt Shield for prompt injection protection, and improved passkey recovery. The release also matters for IT admins because it introduces important security hardening changes—such as stricter sign-in page content security policies and device integrity checks in Microsoft Authenticator—that may require action to avoid disruption.
3 min read · Dec 10, 2025
Entra IDMicrosoft’s Ignite 2025 Entra session replays highlight how the company is extending Zero Trust and identity security to AI agents, workloads, and new AI-driven access patterns rather than rebuilding identity from scratch. The key takeaway for IT teams is that tools like Microsoft Entra Agent ID and the Entra Suite aim to help organizations discover, govern, and protect AI identities as first-class entities, which matters because AI adoption is making identity the central control plane for trust, access, and threat response.
3 min read · Nov 26, 2025
Entra IDMicrosoft Entra has generally released new partner integrations that let organizations add edge-level WAF and bot protection to authentication endpoints, plus fraud prevention in External ID sign-up flows, directly from the Entra portal. The update matters because it helps security teams block DDoS attacks, malicious bots, and fraudulent account creation earlier in the user journey while reducing deployment friction through built-in purchasing and integration options.
3 min read · Nov 25, 2025
Entra IDMicrosoft will enforce a stricter Content Security Policy on the Entra ID sign-in page at login.microsoftonline.com by mid-to-late October 2026, limiting script downloads to trusted Microsoft CDNs and allowing inline scripts only through Microsoft-controlled nonce-based patterns. This matters because it hardens one of the most targeted parts of the authentication flow against script injection attacks, though organizations using browser extensions or custom tools that interact with the sign-in page may need to review compatibility before rollout.
3 min read · Nov 25, 2025
Entra IDMicrosoft is expanding the public preview of Entra Agent ID to give AI agents managed identities, lifecycle governance, and security controls similar to those used for employees, including access packages, Conditional Access, and threat-based protections. The update matters because it helps organizations adopt AI agents at scale without losing visibility or control, reducing risks like unmanaged identities, excessive permissions, and data exfiltration under a Zero Trust model.
3 min read · Nov 19, 2025