Microsoft really wants users to ditch passwords and switch to passkeys

digital key
(Image credit: Shutterstock)

  • Microsoft is strongly pushing for a passwordless future
  • Passkeys don't need to be remembered, and are more secure
  • Redmond details its journey in the passkey journey

Passwords are no longer good enough, Microsoft has said, as it signals a shift towards easier to use and more secure alternatives.

“At Microsoft, we block 7,000 attacks on passwords per second—almost double from a year ago. At the same time, we’ve seen adversary-in-the-middle phishing attacks increase by 146% year over year,” the company said in a new blog post.

“Fortunately, we’ve never had a better solution to these pervasive attacks: passkeys.”

It's time to get on board with passkeys

Passkeys are a more secure alternative to passwords as their private encryption key is only stored on a local device, such as your phone, and not on leaky servers that are liable being attacked. Passkeys also don’t need to be entered into a website - just verifying your identity using a biometric authenticator app that scans your face or a fingerprint will grant you entry to your account.

This also makes them phishing resistant, as an attacker would not only need your personal device to log in, but also your physical form to pass authentication. As an additional bonus, you don’t have to worry about forgetting a passkey, as it isn’t stored in your brain and doesn’t need to be written down or stored in a password manager.

Over the past year, Microsoft has stepped up the rollout of passkeys to its platforms, with passkey support being added to Xbox, Microsoft 365, and Microsoft Copilot in May 2024.

The slow rollout allowed users to become familiar with the option of signing in with a passkey or, as it is displayed on the login page, “face, fingerprint, or PIN,” which users were more familiar with.

Following this, Microsoft began “nudging” users into adopting passkeys at important points in the user experience, such as at account creation, after signing in, and when resetting passwords.

Experiments with messaging were also run, with Microsoft discovering that saying passkeys are “more secure” and “faster” saw a click through rate of 24% and 27% respectively. Additionally, Microsoft did not let users completely opt out of passkey usage by having the button say “Skip for now.”

The Microsoft passwordless sign-in experience

The Microsoft passwordless sign-in experience (Image credit: Microsoft)

Microsoft then moved on to removing friction from the sign in experience by defaulting to passkey authentication if it was available as a login method, removing the need for users to remember passwords and type them in.

As for the future, Microsoft is aiming to eventually phase out passwords, and introduce a totally passwordless login experience using phishing-resistant credentials only.

However, there is still a long way to go until then, including introducing passkeys as the default, phasing out passwords, and then stopping password support altogether - so get ready for a passwordless future.

You might also like

TOPICS
Benedict Collins
Staff Writer (Security)

Benedict has been writing about security issues for over 7 years, first focusing on geopolitics and international relations while at the University of Buckingham. During this time he studied BA Politics with Journalism, for which he received a second-class honours (upper division), then continuing his studies at a postgraduate level, achieving a distinction in MA Security, Intelligence and Diplomacy. Upon joining TechRadar Pro as a Staff Writer, Benedict transitioned his focus towards cybersecurity, exploring state-sponsored threat actors, malware, social engineering, and national security. Benedict is also an expert on B2B security products, including firewalls, antivirus, endpoint security, and password management.

Read more
Person using finger print authentication
Passwords out, passkeys in: The future of secure authentication
Hand holding smartphone and scan fingerprint biometric identity for unlock her mobile phone
Passwordless authentication continues to grow, with biometrics helping push adoption
password manager
I'm a security expert - here are my biggest tips for creating a secure password for work and home life to stay safe online
Security padlock in circuit board, digital encryption concept
MFA alone won’t protect you in 2025: the new cybersecurity imperative
A phone sitting on a laptop keyboard with the Microsoft Outlook logo on the screen.
Microsoft is changing the way logins work: here’s what that means for you
Young woman working at a coffee shop with a laptop
Too many passwords, not enough brain space? Here’s how password managers can improve your life
Latest in Security
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Representational image depecting cybersecurity protection
Cisco smart licensing system sees critical security flaws exploited
Latest in News
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 23 (game #1154)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Sunday, March 23 (game #385)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Sunday, March 23 (game #651)
Google Pixel 9 Pro Fold main display opened
Apple is rumored to be prioritizing battery life on the foldable iPhone – which could also feature a liquid metal hinge for added durability
Google Pixel 9
The Google Pixel 10 just showed up in Android code – and may come with a useful speed boost
L-mount alliance
Sirui joins L-Mount Alliance to deliver its superb budget lenses for Leica, DJI, Sigma and Panasonic cameras