Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • PopulΓ¦re
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

Planlagt Fastgjort LΓ₯st Flyttet Ikke-kategoriseret
29 Indlæg 23 Posters 0 Visninger
  • Γ†ldste til nyeste
  • Nyeste til Γ¦ldste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne trΓ₯d er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • merill@infosec.exchangeM merill@infosec.exchange

    Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

    No IT config needed. πŸ”₯

    3-phase rollout starting Feb 2026:
    ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

    Let your help desk and security teams know.

    πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

    agowa338@chaos.socialA This user is from outside of this forum
    agowa338@chaos.socialA This user is from outside of this forum
    agowa338@chaos.social
    wrote sidst redigeret af
    #4

    @merill

    Soo instead of just rooting a phone one needs now to also deploy 38473894 shady scripts and workarounds to hide it from Microsoft Authenticator?

    Congratulation on improving security (NOT).

    xssfox@cloudisland.nzX 1 Reply Last reply
    0
    • merill@infosec.exchangeM merill@infosec.exchange

      Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

      No IT config needed. πŸ”₯

      3-phase rollout starting Feb 2026:
      ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

      Let your help desk and security teams know.

      πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

      lnr@sunny.gardenL This user is from outside of this forum
      lnr@sunny.gardenL This user is from outside of this forum
      lnr@sunny.garden
      wrote sidst redigeret af
      #5

      @merill I have to admit one of the reasons I use the web application for Outlook on my phone is because installing the Outlook app and adding my work account to it would in theory give work access to control (parts of) my phone - which I don't want. I didn't think the authenticator alone would give that level of access to the device though!

      Is this likely to just drive more people to switch to using Google's authenticator (or another TOTP app) instead of the Microsoft one? I do anyway, because I was already using it for other sites, and it was easier to have them all in one place. You'd lose push authentications: but I feel safer without those anyway!

      resuna@ohai.socialR 1 Reply Last reply
      0
      • merill@infosec.exchangeM merill@infosec.exchange

        Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

        No IT config needed. πŸ”₯

        3-phase rollout starting Feb 2026:
        ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

        Let your help desk and security teams know.

        πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

        msugarhill@chaos.socialM This user is from outside of this forum
        msugarhill@chaos.socialM This user is from outside of this forum
        msugarhill@chaos.social
        wrote sidst redigeret af
        #6

        @merill thats why I neither use MS Authenticator (rather bitwarden) nor Outlook on Android (rather Ninemail)

        1 Reply Last reply
        0
        • merill@infosec.exchangeM merill@infosec.exchange

          Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

          No IT config needed. πŸ”₯

          3-phase rollout starting Feb 2026:
          ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

          Let your help desk and security teams know.

          πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

          domi@donotsta.reD This user is from outside of this forum
          domi@donotsta.reD This user is from outside of this forum
          domi@donotsta.re
          wrote sidst redigeret af
          #7

          @merill@infosec.exchange cringe

          amy@sk.girlthi.ngA 1 Reply Last reply
          0
          • domi@donotsta.reD domi@donotsta.re

            @merill@infosec.exchange cringe

            amy@sk.girlthi.ngA This user is from outside of this forum
            amy@sk.girlthi.ngA This user is from outside of this forum
            amy@sk.girlthi.ng
            wrote sidst redigeret af
            #8

            @domi@donotsta.re @merill@infosec.exchange good guy microsoft protecting us from big scary threats whilst locking token protection (the primary defence to phishing your creds out) behind expensive entra licenses. be so fuckin fr

            domi@donotsta.reD 1 Reply Last reply
            0
            • merill@infosec.exchangeM merill@infosec.exchange

              Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

              No IT config needed. πŸ”₯

              3-phase rollout starting Feb 2026:
              ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

              Let your help desk and security teams know.

              πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

              bernardsheppard@mastodon.auB This user is from outside of this forum
              bernardsheppard@mastodon.auB This user is from outside of this forum
              bernardsheppard@mastodon.au
              wrote sidst redigeret af
              #9

              @merill magisk module to hide root incoming in 3, 2, 1...

              1 Reply Last reply
              0
              • amy@sk.girlthi.ngA amy@sk.girlthi.ng

                @domi@donotsta.re @merill@infosec.exchange good guy microsoft protecting us from big scary threats whilst locking token protection (the primary defence to phishing your creds out) behind expensive entra licenses. be so fuckin fr

                domi@donotsta.reD This user is from outside of this forum
                domi@donotsta.reD This user is from outside of this forum
                domi@donotsta.re
                wrote sidst redigeret af
                #10

                @amy@sk.girlthi.ng @merill@infosec.exchange microslop will save us all!

                (they can’t censor me here :^)

                kuriko@wetdry.worldK 1 Reply Last reply
                0
                • domi@donotsta.reD domi@donotsta.re

                  @amy@sk.girlthi.ng @merill@infosec.exchange microslop will save us all!

                  (they can’t censor me here :^)

                  kuriko@wetdry.worldK This user is from outside of this forum
                  kuriko@wetdry.worldK This user is from outside of this forum
                  kuriko@wetdry.world
                  wrote sidst redigeret af
                  #11

                  @domi @amy
                  @microsoft get them

                  amy@sk.girlthi.ngA 1 Reply Last reply
                  0
                  • kuriko@wetdry.worldK kuriko@wetdry.world

                    @domi @amy
                    @microsoft get them

                    amy@sk.girlthi.ngA This user is from outside of this forum
                    amy@sk.girlthi.ngA This user is from outside of this forum
                    amy@sk.girlthi.ng
                    wrote sidst redigeret af
                    #12

                    @kuriko@wetdry.world @domi@donotsta.re @microsoft@lea.pet OH GOD OH FUCKK

                    1 Reply Last reply
                    0
                    • lnr@sunny.gardenL lnr@sunny.garden

                      @merill I have to admit one of the reasons I use the web application for Outlook on my phone is because installing the Outlook app and adding my work account to it would in theory give work access to control (parts of) my phone - which I don't want. I didn't think the authenticator alone would give that level of access to the device though!

                      Is this likely to just drive more people to switch to using Google's authenticator (or another TOTP app) instead of the Microsoft one? I do anyway, because I was already using it for other sites, and it was easier to have them all in one place. You'd lose push authentications: but I feel safer without those anyway!

                      resuna@ohai.socialR This user is from outside of this forum
                      resuna@ohai.socialR This user is from outside of this forum
                      resuna@ohai.social
                      wrote sidst redigeret af
                      #13

                      @lnr @merill

                      When I worked at Halliburton I asked if there was any way to get email on my phone, and they said they didn't even support BYOD because having someone's phone locked out because it was being wiped right when they'd just been laid off was too evil for them.

                      1 Reply Last reply
                      0
                      • agowa338@chaos.socialA agowa338@chaos.social

                        @merill

                        Soo instead of just rooting a phone one needs now to also deploy 38473894 shady scripts and workarounds to hide it from Microsoft Authenticator?

                        Congratulation on improving security (NOT).

                        xssfox@cloudisland.nzX This user is from outside of this forum
                        xssfox@cloudisland.nzX This user is from outside of this forum
                        xssfox@cloudisland.nz
                        wrote sidst redigeret af
                        #14

                        @agowa338 @merill and someone attacking will still be able to grab the codes before being wiped because you just stop the app before dumping the data

                        agowa338@chaos.socialA 1 Reply Last reply
                        0
                        • merill@infosec.exchangeM merill@infosec.exchange

                          Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

                          No IT config needed. πŸ”₯

                          3-phase rollout starting Feb 2026:
                          ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

                          Let your help desk and security teams know.

                          πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

                          Z This user is from outside of this forum
                          Z This user is from outside of this forum
                          zsapi@mastodon.social
                          wrote sidst redigeret af
                          #15

                          @merill yeah sure, make sure we can't control our devices as we want to, but only as the duopoly/governments allow. Great step toward freedom and security /s

                          1 Reply Last reply
                          0
                          • xssfox@cloudisland.nzX xssfox@cloudisland.nz

                            @agowa338 @merill and someone attacking will still be able to grab the codes before being wiped because you just stop the app before dumping the data

                            agowa338@chaos.socialA This user is from outside of this forum
                            agowa338@chaos.socialA This user is from outside of this forum
                            agowa338@chaos.social
                            wrote sidst redigeret af
                            #16

                            @xssfox @merill

                            Ehm, the azure codes are a bit different than the TOTP ones. Their app also has a kinda proprietary auth code format too. I think it is mainly about them. As for all others you literally just have to store a picture of the QR-Code you used to set them up...

                            Edit: But yea, it probably will end in there being a shady cracked version of the Microsoft Authenticator App that continues to work on rooted phones...

                            xssfox@cloudisland.nzX 1 Reply Last reply
                            0
                            • merill@infosec.exchangeM merill@infosec.exchange

                              Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

                              No IT config needed. πŸ”₯

                              3-phase rollout starting Feb 2026:
                              ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

                              Let your help desk and security teams know.

                              πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

                              pq1r@tech.lgbtP This user is from outside of this forum
                              pq1r@tech.lgbtP This user is from outside of this forum
                              pq1r@tech.lgbt
                              wrote sidst redigeret af
                              #17

                              @merill this idiocy looks like something @GrapheneOS will want to respond to. Microsoft doesn't care if the OS has the latest patches, only that it was certified by the duopoly.

                              1 Reply Last reply
                              0
                              • agowa338@chaos.socialA agowa338@chaos.social

                                @xssfox @merill

                                Ehm, the azure codes are a bit different than the TOTP ones. Their app also has a kinda proprietary auth code format too. I think it is mainly about them. As for all others you literally just have to store a picture of the QR-Code you used to set them up...

                                Edit: But yea, it probably will end in there being a shady cracked version of the Microsoft Authenticator App that continues to work on rooted phones...

                                xssfox@cloudisland.nzX This user is from outside of this forum
                                xssfox@cloudisland.nzX This user is from outside of this forum
                                xssfox@cloudisland.nz
                                wrote sidst redigeret af
                                #18

                                @agowa338 @merill sure but you can get the private data which is the core point of this protection

                                agowa338@chaos.socialA 1 Reply Last reply
                                0
                                • xssfox@cloudisland.nzX xssfox@cloudisland.nz

                                  @agowa338 @merill sure but you can get the private data which is the core point of this protection

                                  agowa338@chaos.socialA This user is from outside of this forum
                                  agowa338@chaos.socialA This user is from outside of this forum
                                  agowa338@chaos.social
                                  wrote sidst redigeret af
                                  #19

                                  @xssfox @merill

                                  Haven't actually looked at how they're doing it. But yea, you can always crack these things.

                                  All that they're doing by adding root detection is forcing people that can't do this themselves to download a modified version off of some shady backyard Russian forum or something...

                                  1 Reply Last reply
                                  0
                                  • merill@infosec.exchangeM merill@infosec.exchange

                                    Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

                                    No IT config needed. πŸ”₯

                                    3-phase rollout starting Feb 2026:
                                    ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

                                    Let your help desk and security teams know.

                                    πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

                                    czauner@social.vivaldi.netC This user is from outside of this forum
                                    czauner@social.vivaldi.netC This user is from outside of this forum
                                    czauner@social.vivaldi.net
                                    wrote sidst redigeret af
                                    #20

                                    @merill

                                    Well another pretty bad idea. You seem to have quite a streak with those, lately.

                                    Time to stock up with popcorn and wait for the fallout.

                                    1 Reply Last reply
                                    0
                                    • merill@infosec.exchangeM merill@infosec.exchange

                                      Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

                                      No IT config needed. πŸ”₯

                                      3-phase rollout starting Feb 2026:
                                      ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

                                      Let your help desk and security teams know.

                                      πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

                                      krazov@mstdn.socialK This user is from outside of this forum
                                      krazov@mstdn.socialK This user is from outside of this forum
                                      krazov@mstdn.social
                                      wrote sidst redigeret af
                                      #21

                                      @merill Whoa.

                                      1 Reply Last reply
                                      0
                                      • merill@infosec.exchangeM merill@infosec.exchange

                                        Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

                                        No IT config needed. πŸ”₯

                                        3-phase rollout starting Feb 2026:
                                        ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

                                        Let your help desk and security teams know.

                                        πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

                                        exilsarahl@chaos.socialE This user is from outside of this forum
                                        exilsarahl@chaos.socialE This user is from outside of this forum
                                        exilsarahl@chaos.social
                                        wrote sidst redigeret af
                                        #22

                                        @merill is this a threat or promise?

                                        1 Reply Last reply
                                        0
                                        • merill@infosec.exchangeM merill@infosec.exchange

                                          Microsoft Authenticator is about to wipe work accounts from jailbroken/rooted phones automatically πŸ‘.

                                          No IT config needed. πŸ”₯

                                          3-phase rollout starting Feb 2026:
                                          ⚠️ Warn β†’ 🚫 Block β†’ πŸ—‘οΈ Wipe

                                          Let your help desk and security teams know.

                                          πŸ”— https://support.microsoft.com/en-us/account-billing/jailbreak-root-detection-in-microsoft-authenticator-9f0431bd-675a-4f2d-b8fb-7acd18deaadc

                                          pa27@mastodon.socialP This user is from outside of this forum
                                          pa27@mastodon.socialP This user is from outside of this forum
                                          pa27@mastodon.social
                                          wrote sidst redigeret af
                                          #23

                                          @merill Who is using MS Auth anyway? Not me for sure! Another reason not to have or use an MS account...

                                          1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Γ†ldste til nyeste
                                          • Nyeste til Γ¦ldste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • PopulΓ¦re
                                          • Verden
                                          • Bruger
                                          • Grupper