Jef Kazimer😶🌫️<p>With the ever increasing attacks on users, moving to <a href="https://infosec.exchange/tags/multifactorauthentication" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>multifactorauthentication</span></a> is a must in order to reduce the attack surface of just relying on a password to secure access to resources. Implementing <a href="https://infosec.exchange/tags/MFA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MFA</span></a> that is enforced all the time relies on also having a good user experience, which gave rise to mobile authenticator apps since many users always have their phones with them. However it also gave rise to <a href="https://infosec.exchange/tags/mfabombing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mfabombing</span></a> and griefing to get those users to approve. With the recent GA of <a href="https://infosec.exchange/tags/microsoftauthenticator" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>microsoftauthenticator</span></a> <a href="https://infosec.exchange/tags/azuread" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>azuread</span></a> orgs can enable number match and context for the push notification to further improve the <a href="https://infosec.exchange/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a> of the users by avoiding the blind approval of a push notification. </p><p>🔥 See the post on the AzureAD blog here and go enable these settings for your organization <a href="https://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/advanced-microsoft-authenticator-security-features-are-now/ba-p/2365673" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">techcommunity.microsoft.com/t5</span><span class="invisible">/microsoft-entra-azure-ad-blog/advanced-microsoft-authenticator-security-features-are-now/ba-p/2365673</span></a> <a href="https://infosec.exchange/tags/microsoft" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>microsoft</span></a> <a href="https://infosec.exchange/tags/office365" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>office365</span></a> <a href="https://infosec.exchange/tags/o365" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>o365</span></a> <a href="https://infosec.exchange/tags/cloudsecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cloudsecurity</span></a></p>