Microsoft just added 13 Graph authentication delete permissions
Read OriginalMicrosoft recently introduced 13 new application permissions for Microsoft Graph, specifically designed for deleting authentication methods from user identities. These permissions, including UserAuthenticationMethod.Delete.All and type-specific ones like UserAuthMethod-Passkey.Delete.All, allow unattended applications to remove credentials without broader read/write access. This aligns with Microsoft's strategy to empower SOC teams in responding to identity threats in Entra. The permissions are app-only, require admin consent, and apply to all users. Microsoft's documentation hasn't fully updated yet, so the author advises testing but waiting for official support before replacing existing consent. This is a technical update for IT professionals managing identity security.
Comments
No comments yet
Be the first to share your thoughts!
Browser Extension
Get instant access to AllDevBlogs from your browser