Daniel 8/24/2026

Microsoft just added 13 Graph authentication delete permissions

Read Original

Microsoft recently introduced 13 new application permissions for Microsoft Graph, specifically designed for deleting authentication methods from user identities. These permissions, including UserAuthenticationMethod.Delete.All and type-specific ones like UserAuthMethod-Passkey.Delete.All, allow unattended applications to remove credentials without broader read/write access. This aligns with Microsoft's strategy to empower SOC teams in responding to identity threats in Entra. The permissions are app-only, require admin consent, and apply to all users. Microsoft's documentation hasn't fully updated yet, so the author advises testing but waiting for official support before replacing existing consent. This is a technical update for IT professionals managing identity security.

Microsoft just added 13 Graph authentication delete permissions

Comments

No comments yet

Be the first to share your thoughts!