Jump to content
  • Massive Microsoft account security change almost snuck out without enough warning


    Karlston

    • 98 views
    • 3 minutes
     Share


    • 98 views
    • 3 minutes

    Your Microsoft account will now remain signed in automatically, which could pose a security risk if people don't know about the change.

    Microsoft is about to make a major change to how sign-ins work within web browsers. Starting February 2025, you will automatically stay signed in to your Microsoft account. This is a significant change from the current behavior, which would sign out automatically after 24 hours.

     

    The change aligns Microsoft more with Google, which already leaves accounts logged in. But that alignment is not necessarily a good thing. Google has been criticized for this behavior, and Microsoft will likely see some pushback.

     

    The change will save some time for those who use Microsoft accounts on personal computers or within any secure environment. However, unless someone knows about the change, the new behavior could also increase security risks surrounding a Microsoft account.

     

    It's good practice to explicitly sign out of your Microsoft account and other accounts after you've finished using a public or shared PC, but there was a built-in failsafe for those who did not sign out. Signing in an account by accident still leaves your details vulnerable for 24 hours, but after that, your account will be signed out automatically.

     

    Alternatively, you can use private browsing. Microsoft recommends that route as a more secure way to use a public or shared PC.

     

    Outlook showing notification about accounts remaining signed in automatically.

     

    Outlook now warns users about the upcoming change that will leave accounts signed in automatically. (Image credit: Future)

     

    Microsoft almost rolled out the change without a clear and obvious notification to users. A short note on a Microsoft support document highlights the change, but that page is unlikely to be seen by many. But Microsoft has added a notification within Outlook on the web.

     

    Outlook now shows a warning that states, "Your sign-in experience is changing. You'll stay signed in unless you use private browsing or explicitly sign out."

     

    If you leave a browser signed in to your account on a PC or anywhere else, you can sign out of your Microsoft account remotely. This can be done through advanced security options within the Microsoft account security dashboard. Microsoft also has a guide on how to manage devices that use your Microsoft account.

     

    Source


    Hope you enjoyed this news post.

    Thank you for appreciating my time and effort posting news every day for many years.

    News posts... 2023: 5,800+ | 2024: 5,700+

    RIP Matrix | Farewell my friend  :sadbye:


    User Feedback

    Recommended Comments

    There are no comments to display.



    Join the conversation

    You can post now and register later. If you have an account, sign in now to post with your account.
    Note: Your post will require moderator approval before it will be visible.

    Guest
    Add a comment...

    ×   Pasted as rich text.   Paste as plain text instead

      Only 75 emoji are allowed.

    ×   Your link has been automatically embedded.   Display as a link instead

    ×   Your previous content has been restored.   Clear editor

    ×   You cannot paste images directly. Upload or insert images from URL.


  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...