NEWS

Microsoft Leads the Charge to Replace Passwords with Passkeys for a Safer Digital Future

Microsoft is phasing out passwords in favor of passkeys, a move aimed at bolstering cybersecurity amid rising AI-enabled threats. This shift promises a more secure digital future, urging users to adopt passkeys for enhanced protection of their online identities.

By
LNGFRM Team
Published April 19, 2025
Image courtesy of Forbes

In the rapidly evolving landscape of cybersecurity, one constant has remained unchanged for decades: the password.

For years, it has been our digital gatekeeper, the key to our online world.

But as technology evolves, so do the threats that loom in the shadows, and the password is now a relic of a bygone era, vulnerable to the clever machinations of cybercriminals wielding AI-powered tools.

Microsoft, a titan in the tech industry, is sounding the alarm and heralding a new era of security.

The company has embarked on an ambitious mission to phase out passwords for over a billion users, introducing a revolutionary shift towards passkeys.

This isn’t just a simple upgrade; it’s a seismic transformation in how we secure our digital identities.

Why now, you might ask?

The answer lies in the relentless march of technology.

AI has democratized cybercrime, lowering the barrier for entry to such an extent that even novices can launch sophisticated phishing attacks with a few keystrokes.

Guardio, Symantec, and Cofense have all raised red flags about the growing menace of AI-enhanced cyber threats.

In response, Microsoft has acknowledged that the traditional password is no longer a viable defense.

The statistics are staggering: Microsoft blocks 7,000 password attacks per second, a figure that has nearly doubled over the past year.

This surge underscores the urgent need for an alternative.

Enter passkeys—a robust, phishing-resistant technology that ties your login credentials to the security of your hardware devices.

Unlike passwords, passkeys cannot be stolen, copied, or leaked.

They are, in essence, the digital equivalent of a physical security key, only accessible with your unique devices.

But while passkeys may seem like the panacea for our security woes, they are not a silver bullet.

AI can still craft insidious social engineering lures capable of deceiving even the most vigilant among us.

However, these attacks often rely on stealing traditional credentials.

By eliminating passwords from the equation, passkeys add a formidable layer of defense.

Google, too, has recognized the potential of passkeys, though it opts to keep passwords as a backup.

Microsoft, however, warns against this approach, arguing that any account with both a passkey and a password remains susceptible to phishing.

The company’s vision is clear: a future without passwords, a future where passkeys reign supreme.

Setting up a passkey is a straightforward process.

For personal Microsoft accounts, users simply navigate to Advanced Security Options, select a new sign-in method, and follow the on-screen instructions.

School or work accounts require a similar procedure through the Security Info section.

The simplicity of this process belies its significance: with just a few clicks, users can step into a future where their digital lives are shielded by robust, user-friendly security.

Andrew Shikiar, CEO of the FIDO Alliance, which champions passkey adoption, lauds this as a milestone moment.

As Microsoft leads the charge to retire passwords, it paves the way for a more secure digital landscape, urging other tech giants to follow suit.

In this brave new world, setting up passkeys across all major platforms is not just prudent—it’s essential.

As we transition from passwords to passkeys, let us also remember to refresh our existing passwords, use unique credentials, and employ the most secure forms of two-factor authentication available.

But most importantly, let us embrace this shift towards a future where our digital identities are anchored in the secure foundation of passkeys.

As the old saying goes, the best time to plant a tree was 20 years ago; the second-best time is now.

The same holds true for securing our digital lives.

Author

  • LNGFRM Team

    Frank DiBernardo handles LNGFRM's Foodie and Miscellaneous writing tasks. He's always getting ideas from users, so don't be afraid to send an email to the editor.

Daily Newsletter
Subscribe to our Newletter!
You May Also Like

Mohit Bansal: On Zero-Headcount Security Scaling

Mohit Bansal’s approach to security engineering at Webflow rests on a deceptively simple reframe: treating fixed headcount not as a limitation to work around but as a firm design constraint that shapes every architectural decision, from how vulnerabilities get prioritized to how vendor risk gets automated away. His core discipline is pragmatic sequencing over theoretical perfection—getting 80 percent coverage on five critical risks rather than chasing 100 percent on two—paired with a relentless drive to automate repetitive data-gathering so a fixed team can spend its limited human judgment on the problems that actually require it.

By Mike Malone
Published June 30, 2026
© 2026 LNGFRM. All rights reserved.