Microsoft Mandates MFA for Microsoft 365 Admin Center Access
ID: cb1dde24-23b9-5845-bc7a-2a4e960e9cbc
STIX ID: report--cb1dde24-23b9-5845-bc7a-2a4e960e9cbc
Feed Name: GBHackers
Microsoft will require multi-factor authentication (MFA) for anyone accessing the Microsoft 365 admin center, fully enforcing the change on February 9, 2026. The policy will block admin users without MFA from signing into core admin portals (portal.office.com/adminportal/home, admin.cloud.microsoft, admin.microsoft.com), and Microsoft urges organizations to enable MFA, audit privileged accounts (including hybrid environments), and prepare to avoid lockouts. The change is intended to reduce credential-stuffing, phishing, and related attacks against high-privilege accounts and to align with compliance frameworks and other identity protections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
