Microsoft warns Authenticator will block rooted Android and jailbroken iOS, verify if your phone is affected.
I can guarantee this will be a hilarious shitstorm of false positives wasting IT departments' time, because their detection of it is massively flawed.
At least once a month my - completely stock, and un-rooted - phone tells me I can't use Outlook/Teams because of root. Every time, a reboot is required to resolve this. One one occasion, TWO reboots.
Ignoring whatever reason Microsoft think they're blocking this for, it's going to regularly block regular users, who are not going to stand for it.
Wizard_Pope@lemmy.world 3 weeks ago
Why would you use microsoft Authenticator anyway?
skooma_king@piefed.social 3 weeks ago
Work
Korhaka@sopuli.xyz 3 weeks ago
I don’t really mind using shit software on work devices. Yes it’s slow and inefficient, I spent half an hour today on Windows doing what would be a very short command on Linux. Fuck it, get paid the same. I just use Linux at home in my own time.
artyom@piefed.social 3 weeks ago
You don’t need it for work. You can use any authenticator.
timewarp@lemmy.world 3 weeks ago
Then stop working for retards who support Nazis
Wizard_Pope@lemmy.world 3 weeks ago
You can use other authenticators. I use ente auth for my microsoft account
blargh513@sh.itjust.works 2 weeks ago
Some organizations require authenticator; they don’t just use it for MFA codes, it’s goes deeper than that.
Also, most large enterprise fall for the stupid Microsoft trap. They buy enterpise licensing in bulk (E3, E5, whatever) and bosses who have no brains will say “well, let’s use more microsoft products since they’re ‘free’”. The trap is that, yes, your enterprise license agreement includes entitlements to a lot of their stuff, but they nickle and dime you on stupid shit like the storage so you can keep the logging and telemetry data you typically need for security, troubleshooting and some audit requirements.
I can’t imagine ever using any of their shit beyond Office products. Their security software is crap compared to most offerings, they still seem to think that networks are bad so we should do as little as possible about them. Azure is just a completely uncontrollable money drain (by design) that is damn near impossible to secure properly once you give developers enough access to actually do their jobs.
I’ve been working in security for a long time now and they continue to be such a fucking liability and drain on money at every turn. If I ran the zoo, I would switch the entire enteprise to Linux and find just about any other collaboration suite to use.
Fuck Excel and fuck you if all you do with it is make lists. Fuck powerpoint and fuck every boss who is too dumb to read and only can accept information when it is spoon fed to them in a deck. Word is OK, but nobody reads anymore so what’s the point?
ThunderLegend@sh.itjust.works 2 weeks ago
I had to use it for my work. They required MS authenticator. I think it’s bullshit and tried to export my 2fa to bitwarden. I couldn’t. And to add another 2fa .method I need to call support so I gave it up
79WistfulVista@lemmy.zip 2 weeks ago
They don’t let you use mysignins.microsoft.com to replace/add MFA methods? That site was very useful at my last employer, as I was switching phones often.
BCsven@lemmy.ca 2 weeks ago
I had a yubikey as my hardware authentication, then a coworkers email got hacked so IT moved us all to Microsoft authenticator, so now I have a less secure login method LOL
Prove_your_argument@piefed.social 3 weeks ago
This change is really more about enterprise use cases. If you take DLP seriously you need to make sure the integrity of the controls on work provided devices are intact.
Nothing stops someone taking a photo of another screen. It’s not a panacea. It’s just one more hurdle.
richardwallass@sh.itjust.works 2 weeks ago
When you are using your phone for your work you don’t really have the choice.
Wizard_Pope@lemmy.world 2 weeks ago
If it’s work provided sure. But if its your own device then fuck them, not installing that shit on my own device. Provide one for me
eleitl@lemmy.zip 2 weeks ago
It’s not my phone, then. I don’t use my private devices for work.
lyralycan@sh.itjust.works 3 weeks ago
Yup, I use Aegis, and found a strange little trick with Bitwarden Authenticator where I can import them into the main app (the Vaultwarden server). I know keeping all my power in one place defeats the purpose of 2FA but you know, I trust Vaultwarden, and myself to keep it secore, implicitly.
Tollana1234567@lemmy.today 2 weeks ago
people likely using workday as for a job probably, or any app that uses MS.
AlecSadler@lemmy.dbzer0.com 2 weeks ago
Ugh, fuck workday