Microsoft announced that Microsoft Entra ID will, starting in March 2026, automatically enable passkey profiles and add synced passkeys support as the capability moves into general availability. The update introduces a new passkeyType property to control whether users can register device-bound passkeys, synced passkeys, or both, and adds a new admin experience that supports group-based configuration rather than tenant-wide-only settings. Microsoft plans a staged rollout with an opt-in window; tenants that do not opt in will be migrated later, with existing FIDO2/passkey authentication method settings moved into a default passkey profile and passkeyType set based on current attestation configuration.
Separately, Microsoft is preparing a Microsoft Teams feature (Microsoft 365 Roadmap ID 488800) that can automatically set and display a user’s work location based on the organizational Wi‑Fi network (SSID) they connect to, mapping recognized network identifiers to building/location data configured by tenant administrators. The feature is described as off by default and requires admin enablement, with rollout now targeted for March 2026 after prior delays; it is positioned as a hybrid-work coordination improvement but raises potential privacy/employee monitoring concerns due to automated location inference.

See the reporting duties and controls this puts on the clock.
3 events from the most recent confirmed update back to the earliest known activity.
Microsoft said that starting in March 2026, Entra ID will automatically enable passkey profiles and add general availability support for synced passkeys. The change includes a new group-based passkey profile experience and a passkeyType setting to control device-bound, synced, or both passkey types.
Microsoft disclosed that Teams will be able to automatically update a user's work location, such as a building, by matching connected corporate Wi‑Fi SSIDs to administrator-defined location mappings. Microsoft said the feature will only operate during defined working hours and will clear the location status at the end of the workday.
Microsoft's Microsoft 365 Roadmap entry 488800 for a Teams feature that auto-detects and displays a user's work location based on organizational Wi‑Fi was postponed from January 2026 to February 2026 and then to March 2026. The feature is described as off by default, requiring tenant admin enablement and end-user opt-in.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
2 references tracked. Mallory keeps watching after this page renders.
helpnetsecurity.com
Open sourcecybersecuritynews.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.