
Block High-risk Agents Using Identity Protection
Detect and block high-risk agents automatically using Identity Protection and Conditional Access for Agents based on real-time risk signals.
8 min read
Microsoft has officially announced that passkeys will become the default authentication method in Microsoft Entra, replacing Microsoft-provided SMS and voice authentication. The change begins rolling out on September 1, 2026, with the transition completing on February 1, 2027.
Microsoft is adding two new PowerShell settings that let admins control who can join federated group chats in Microsoft Teams. These settings are disabled by default and will roll out globally between late July and late September 2026.
Microsoft has introduced cross-tenant message recall in Exchange Online. This feature allows users to recall emails sent to external Microsoft 365 tenants. It is disabled by default and works only when the receiving organization explicitly enables it and adds the sender’s Microsoft Entra tenant IDs to an allow list via PowerShell. The rollout begins in mid-August 2026, delivering a secure recall experience for cross-organization collaboration.
Microsoft’s Network Data Security helps protect sensitive company data when people use AI tools, cloud apps, or websites outside of managed Microsoft 365 apps. It checks data in real time as it is being uploaded, pasted, or shared, and can block it if it breaks company rules. It works by combining Microsoft Purview’s data protection with Microsoft Entra’s network control to make sure sensitive information doesn’t accidentally leave the organization.
Microsoft recently introduced manual incident creation in preview for Defender to help security teams investigate threats beyond automated detections. Analysts can now instantly track, manage, and correlate user reported threats and other security findings, even when no alert is generated automatically.
Microsoft has introduced two new service plans named ‘Entra Conditional Access for Agents’ and ‘Entra ID Protection for Agents’ under Microsoft 365 Agent and E7 licenses. Starting in July 2026, organizations using agent security capabilities must ensure they have the required Microsoft 365 Agent or E7 licenses to continue accessing these features without disruption. This blog explains the licensing update, its impact on organizations, and the steps admins should take to ensure AI agents remain protected.
Struggling to automate secure monitor manage M365?
Try AdminDroid for Free!Get Microsoft 365 Security tips & best practices

Detect and block high-risk agents automatically using Identity Protection and Conditional Access for Agents based on real-time risk signals.
8 min read

Learn how to create manual incidents and alerts in Microsoft Defender and investigate user reported threats beyond automated detections.
6 min read

Use custom account correlation rules in Microsoft Defender to link related identities and improve threat detection.
10 min read

Discover why attackers target workload identities and how to detect, remediate, and secure them in Microsoft Entra ID.
13 min read

Microsoft will require registered authentication methods for SSPR verification. Find unregistered users amd prepare for enforcement.
4 min read

Learn how to securely configure the My Staff portal in Microsoft Entra ID using PIM and Conditional Access to protect delegated admin access.
9 min read

Create a SharePoint site ownership policy to detect ownerless sites, notify users to assign owners, and enforce read-only or archive actions.
11 min read

Detect Storm-2949 attacks in Microsoft 365 using AdminDroid. Identify and act early before it escalates into a cloud breach
8 min read

Learn how to control unmanaged device access in SharePoint Online to protect data by limiting or blocking access from non-compliant devices at tenant and site level.
11 min read

Explore default user permissions in Microsoft 365 and learn how to manage these built-in settings that are enabled by default.
13 min read

Discover how the Shadow AI page in Microsoft 365 helps you identify, monitor, and block unauthorized AI tools to reduce risk and secure usage.
4 min read

Discover the top Microsoft 365 security settings you should disable to reduce risks, prevent data exposure, and strengthen tenant security.
16 min read