Microsoft
Welcome to the Microsoft community! This is a place to discuss everything related to Microsoft, including products, services, features, and discussions (e.g., Windows, Surface, 365).
General discussions about Microsoft products, updates, tips, and related topics are welcome. However, for specific technical support, account-related inquiries, advertising questions, and other issues, please direct them to official Microsoft support channels.
Rules
-
Stay on topic: All posts should be related to Microsoft products, services, or the Microsoft ecosystem.
-
Respectful discussions: Treat fellow community members with respect and engage in constructive discussions. Avoid personal attacks, harassment, or offensive language.
-
No support inquiries: Please refrain from posting individual support inquiries or account-related issues. Use official Microsoft support channels for assistance.
-
No spam or self-promotion: Do not post spam or self-promotional content. This includes links to personal websites, blogs, or products/services.
-
No illegal content: Do not share or discuss illegal content, including piracy, hacking, or copyright infringement.
-
No misleading information: Avoid spreading false or misleading information about Microsoft or its products.
-
No inappropriate content: Do not post or link to any inappropriate or NSFW (Not Safe for Work) content.
-
No off-topic discussions: Keep the discussions focused on Microsoft products, services, and related topics. Avoid unrelated or off-topic discussions.
-
No excessive self-promotion: Do not promote products, services, or websites.
view the rest of the comments
The problem is that brute-forcing passwords hasn't been a thing for ages. It's all about phishing and social engineering now, something passwords can't protect against. It doesn't seem like they're pushing for pins as much as passkeys, which I much prefer using over other bandaid fixes like SMS 2FA (well, now that Firefox for Android properly supports using passkeys from Bitwarden. Before they fixed that, they were really obnoxious to use).
SMS 2FA hasn't been valid MFA for a decade. It's junk and I wish organizations were ridiculed into improving.