← Previous day

Next day →
Day in brief

31 May: Entra documentation adds security guidance and Copilot playbooks; PIM for Groups is explicitly marked Preview

The period is documentation-led rather than a confirmed service rollout. The strongest additions are a Microsoft Security Copilot workflow for Entra recommendations, governance-focused Entra Copilot procedures, and new Entra ID guidance on redirect-URI hygiene and Global Administrator access to Azure subscriptions. An updated ID Governance page documents eligible PIM for Groups membership and ownership in access packages and explicitly labels that capability Preview. No supplied change announces general availability, retirement, a Message Center event, or a runtime policy change; the PIM/access-package timing reference is best read as documentation clarification.

  • A new Security Copilot page documents using Microsoft Security Copilot and Microsoft Entra skills to investigate how to move a tenant toward a secure and healthy state. This establishes a new Learn workflow, not a confirmed feature launch, preview, or general-availability announcement.

  • New ID Governance content describes using Microsoft Security Copilot and Microsoft Entra skills to investigate identity-based security incidents in Entitlement Management; a companion page covers extracting and analyzing Access Reviews data. These are task-specific procedures, with no stated change to Entitlement Management, Access Reviews, or Copilot behavior.

  • A new Microsoft identity platform page focuses on the requirement that app registrations not have dangling or abandoned domain redirect URIs. The item establishes a documented control area, but supplies no detail about enforcement, remediation, or a change in redirect-URI processing.

  • A new Entra ID page states that Global Administrators do not have standing access to Azure subscriptions. This is a least-privilege and access-model guidance point, not evidence in this feed that existing tenants were migrated or that subscription permissions changed.

  • The updated ID Governance page describes assigning eligible group membership or ownership in access packages through Privileged Identity Management for Groups, including enabling PIM for a group, adding the group to an access package, and verifying eligible assignments. The capability is explicitly labeled Preview; no general-availability date or retirement is supplied.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

26 updates

3

Licensing Service Plan Reference

Updated

- **Service plans included (friendly names)**: A list of service plans (friendly names) in the product that correspond to the string ID and GUID

2

Whats New

Updated

>Get notified about when to revisit this page for updates by copying and pasting this URL: `https://learn.microsoft.com/api/search/rss?search=%22Release+notes+-+Azure+Active+Directory%22&locale=en-us` into your ![RSS feed reader icon](./media/whats-new/feed-icon-16x16.png) feed reader.

1
1
1
1

Kerbf5 Tutorial

Updated

* F5 BIG-IP system is provisioned with APM modules (LTM is optional)

1

Troubleshoot Publisher Verification

Updated

1. Navigate to the [Cloud Partner Program enrollment page](https://partner.microsoft.com/dashboard/account/v3/enrollment/joinnow/basicpartnernetwork/new).

1

Copilot Security Entra

Updated

:::image type="content" source="./media/copilot-entra-risky-user-summarization/risky-user-details.png" alt-text="Screenshot that shows the ID Protection risky user summarization details.":::

5

Assign eligible group membership and ownership in access packages via Privileged Identity Management for Groups (Preview)

Updated

As an access package manager, you can assign which role you want to provide a user for a group within an access package. By [managing groups with Privileged Identity Management(PIM)](../id-governance/privileged-identity-management/groups-discover-groups.md), you're able to enhance security by designating that group access happens just-in-time. This article describes how to enable PIM for a group, adding the group to an access package, and verifying eligible assignments are available.

Pim Apis

Updated

- PIM alerts for Azure Resources in ARM API - Preview.

Entitlement Management Access Package Resources

Updated

Any users with existing assignments to the access package will automatically become members (or owners) of this group or team after it's added. For more information, see [when changes are applied](#when-changes-are-applied).

4
1

Verified helpdesk with Microsoft Entra Verified ID

Updated

An ongoing challenge for helpdesk is verifying the identity of callers seeking help, especially in remote interactions via phone, chat, or email. Traditional methods such as personally identifiable information (PII) and knowledge-based authentication are no match for today’s sophisticated attackers, who leverage phishing, social engineering, and even AI-powered voice cloning to bypass defences. The consequences are serious: under pressure, helpdesk agents may unintentionally expose sensitive data or authorize fraudulent actions.

1

Microsoft Entra Verified ID Identity Verification partners

Updated

Our Identity Verification (IDV) partner network extends Microsoft Entra Verified ID's capabilities to help you build seamless end-user experiences. With Verified ID, you can integrate with IDV partners to enable scenarios like remote onboarding with government ID checks using identity verification and proofing services.

1
1
2
Daily Entra.News

Get daily email updates

Get a concise summary of the latest Microsoft Entra updates delivered straight to your inbox.

Loading the secure signup form…