
Best Practices for Emergency Accounts in Active Directory
Discover best practices for Active Directory break glass accounts to ensure secure and reliable access during critical incidents.
11 min read
Microsoft Graph’s groupAnalytics API (currently in preview) provides detailed insights into Microsoft Entra ID groups, eliminating the need for complex custom scripts to get member counts, owner counts, expiration status, and more. This blog explores the groupAnalytics API and demonstrates how to use it for better management of Entra ID groups.
Microsoft is ending the preview of the memberOf rule operator on November 3, 2026. After this change, dynamic groups, dynamic administrative units, and entitlement management auto-assignment policies using memberOf rules will stop updating their memberships. This blog includes a PowerShell script to quickly identify affected configurations and helps admins plan their migration to supported dynamic membership rules.
Microsoft Purview now supports time-limited role group assignments for both new and existing members. Admins can set an expiration date from 1 day to 2 years. Once the date is reached, Purview automatically removes the role group assignment. This blog explains how to configure expiration for Purview role groups and the key limitations to know.
If Microsoft Entra Connect Sync is still running solely for device synchronization, you're maintaining infrastructure you may no longer need. This guide shows you how to configure Device Sync in Microsoft Entra Cloud Sync using the Microsoft Entra admin center and Microsoft Graph to synchronize Active Directory computer objects without relying on Microsoft Entra Connect Sync.
Microsoft has officially announced that passkeys will become the default authentication method in Microsoft Entra, replacing Microsoft-provided SMS and voice authentication. The change begins rolling out on September 1, 2026, with the transition completing on February 1, 2027.
Microsoft is adding two new PowerShell settings that let admins control who can join federated group chats in Microsoft Teams. These settings are disabled by default and will roll out globally between late July and late September 2026.
Struggling to automate secure monitor manage M365?
Try AdminDroid for Free!One stop place for comprehensive Microsoft 365 security checklists, covering all services.

Discover best practices for Active Directory break glass accounts to ensure secure and reliable access during critical incidents.
11 min read

Discover the top Microsoft 365 security settings you should disable to reduce risks, prevent data exposure, and strengthen tenant security.
16 min read

Explore how ConsentFix attack abuses trusted Microsoft 365 first-party app access and learn mitigations to prevent OAuth token misuse.
15 min read

Explore step-by-step methods to identify insecure RC4 usage in Active Directory Kerberos tickets and disable them to strengthen security.
16 min read

Discover 15 SharePoint permissions best practices to prevent unauthorized access, manage permissions efficiently, and stay in control.
13 min read

Learn how to prevent Teams sprawl with 10 proven strategies to improve governance and reduce security risks.
12 min read

Discover the top Microsoft 365 admin blogs of 2025, featuring the latest tips and best practices to help you manage your M365 environment.
15 min read

Explore the crucial Microsoft Teams governance strategies to improve collaboration and ensure compliant use of Teams across the organization.
11 min read

Cybersecurity Month wrap-up: Strengthen IT environments and secure Microsoft 365, Active Directory, hybrid, and AI platforms.
11 min read

Explore key strategies to safeguard employee personal data across apps, devices, and cloud services in modern hybrid workplaces.
8 min read

Local admin accounts can make or break security. Learn all risks and practical steps to secure local admins and protect devices from privilege abuse.
7 min read

Protect your remote work environment by implementing 11 remote desktop access best practices to prevent data leaks caused by unauthorized access.
8 min read