No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Protection

Microsoft Authenticator to Enforce Number Matching

May 12, 2023
in Protection
0
Microsoft Authenticator to Enforce Number Matching



Multi-factor authentication is an essential element of identity and access management, but it is not fail-proof as attackers are increasingly employing social engineering tactics to bypass MFA controls. As a way to enhance the security of MFA, Microsoft is enforcing “number matching” for all users of its Microsoft Authenticator app.

Previously, the process flow for Microsoft Authenticator just displayed a prompt in the app when the user tried to log into an application. The user tapped the prompt on the secondary device to authorize the transaction. Number matching adds another step by forcing users to have the secondary device and see the login screen on the primary device. Instead of just tapping the prompt, users will now have to enter a number that is displayed on the application’s login screen. A person logging into Office 365, for example, would see a message on the original login screen with a numeric code. The person would enter that code into the Authenticator app on their secondary device to approve the transaction. There is no way to opt out of entering the code.

“Number matching is a key security upgrade to traditional second factor notifications in Microsoft Authenticator,” Microsoft said in a support article. “We will remove the admin controls and enforce the number match experience tenant-wide for all users of Microsoft Authenticator push notifications starting May 8, 2023.”

Attacks Are More Prevalent

Number matching was originally introduced in Microsoft Authenticator as an optional feature in October 2022 after attackers started spamming users with MFA push notification requests. Users were granting access to the attackers just to get the spam notifications to stop, or by mistake. Number matching is designed to help users avoid accidentally approving false authentication attempts. MFA fatigue – overwhelming users with MFA push notifications requests – has “become more prevalent,” according to Microsoft, who observed almost 41,000 Azure Active Directory Protection sessions with multiple failed MFA attempts in August 2022, compared with 32,442 a year earlier. There were 382,000 attacksemploying this tactic in 2022, Microsoft said.

It was also recently used in attacks against Uber, Microsoft, and Okta.

Number matching with Authenticator will be used for actions such as password resets, registration, and access to Active Directory. Users will also see additional context, such as the name of the application and the location of the login attempt, to prevent accidental approvals. The idea is that users have to cannot accept a login attempt if they are not in front of the login screen at that time.

How to Enable Number Matching

While number matching was enabled by default for Microsoft Azure in February, users will see that some services will start using this feature before others. Microsoft recommends enabling number match in advance to “ensure consistent behavior.” Administrators can enable the setting by navigating to Security – Authentication methods – Microsoft Authenticator in the Azure portal.

  1. On the Enable and Target tab, click Yes and All users to enable the policy for everyone or add selected users and groups. The Authentication mode for these users and groups should be either Any or Push.
  2. On the Configure tab for Require number matching for push notifications, change Status to Enabled, choose who to include or exclude from number matching, and click Save.

Administrators can also limit the number of MFA authentication request allowed per user and lock the accounts or alert the security team when the number is exceeded.

Users should upgrade to the latest version of Microsoft Authenticator on their mobile devices.

Number matching does not work for wearables such as Apple Watch or other Android devices. Users will have to key in the number via the mobile device, instead.

Editorial Team

Editorial Team

Related Posts

This Fire TV Stick Is Already 50% Off for the Amazon Spring Sale
Protection

This Fire TV Stick Is Already 50% Off for the Amazon Spring Sale

March 25, 2026
Spotify's New 'SongDNA' Is Actually a Great Way to Learn More About Your Music
Protection

Spotify’s New ‘SongDNA’ Is Actually a Great Way to Learn More About Your Music

March 25, 2026
The Best Ways to Make Use of Those Spare USB Ports on Your TV or Monitor
Protection

The Best Ways to Make Use of Those Spare USB Ports on Your TV or Monitor

March 25, 2026
Ultrahuman’s New Ring Pro Is Finally Available in the US
Protection

Ultrahuman’s New Ring Pro Is Finally Available in the US

March 25, 2026
10 Shows Like 'Call the Midwife' You Should Watch Next
Protection

10 Shows Like ‘Call the Midwife’ You Should Watch Next

March 25, 2026
What The FCC's Router Ban Could Mean for You
Protection

What The FCC’s Router Ban Could Mean for You

March 25, 2026
Load More
Next Post
Nvidia is the 'picks and shovels leader in the AI gold rush' that could expand its market share as competition heats up, Bank of America says

Nvidia is the 'picks and shovels leader in the AI gold rush' that could expand its market share as competition heats up, Bank of America says

Popular News

  • Condé Nast Traveler

    Why Cruise Fares Could Get More Expensive Amid the Iran War

    0 shares
    Share 0 Tweet 0
  • Oil prices fall on reports of a U.S. ceasefire proposal with Iran

    0 shares
    Share 0 Tweet 0
  • How to Contact Hilton Customer Service

    0 shares
    Share 0 Tweet 0
  • Time4Advice founders to retire as Richard Brian steps into leadership role

    0 shares
    Share 0 Tweet 0
  • How To Conduct A Productive Meeting

    0 shares
    Share 0 Tweet 0

Latest News

BlackRock’s Fink on why he won’t cash out private-credit investors: ‘Those are the rules, live with it.’

BlackRock’s Fink on why he won’t cash out private-credit investors: ‘Those are the rules, live with it.’

March 25, 2026
0

BlackRock Chairman and CEO Larry Fink has an unforgiving message to private-credit investors who want to exit their funds.

BitGo and Susquehanna Crypto open OTC prediction markets to institutions

BitGo and Susquehanna Crypto open OTC prediction markets to institutions

March 25, 2026
0

BitGo Prime and Susquehanna Crypto have launched an institutional OTC offering that gives eligible BitGo clients access to listed prediction...

Oil prices fall on reports of a U.S. ceasefire proposal with Iran

Oil prices fall on reports of a U.S. ceasefire proposal with Iran

March 25, 2026
0

Brent crude traded 5% lower on reports of U.S. ceasefire proposal.

Crypto

CFTC Chair Announces New Task Force Focused On Crypto, Prediction Markets, And AI

March 25, 2026
0

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Michael Selig, Chairman of the Commodity Futures...

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.