True, but so are all of the cloud platforms, so that doesn’t really set it apart. Being legacy tech at this point without a lot of new code being added regularly, most of the weaknesses are pretty well understood.
EntraID requires internet but at least allows zero trust
Yeah I’m not convinced that Microsoft as an entity actually grasps the concept of zero trust. I think they likely have their own internal definition of it, just like they had their own definition of web standards back in the Internet Exploder days.
Look at what happened recently with Edge, where they claimed that storing user credentials in cleartext was “intended behavior”:
True, but so are all of the cloud platforms, so that doesn’t really set it apart. Being legacy tech at this point without a lot of new code being added regularly, most of the weaknesses are pretty well understood.
Yeah I’m not convinced that Microsoft as an entity actually grasps the concept of zero trust. I think they likely have their own internal definition of it, just like they had their own definition of web standards back in the Internet Exploder days.
Look at what happened recently with Edge, where they claimed that storing user credentials in cleartext was “intended behavior”:
https://www.bleepingcomputer.com/news/microsoft/microsoft-edge-to-stop-loading-cleartext-passwords-in-memory-on-startup/