I need help to get into my M365 account? Locked out for 3 days - NO SUPPORT from Microsoft!

Joanna 0 Reputation points
2026-04-03T18:04:54.4433333+00:00

URGENT: Global Admin Locked Out of Microsoft 365 – Cannot Access Primary Email or Update Contact Details

I urgently need assistance with a Microsoft 365 business account lockout.

I am the sole global administrator of my tenant and have been completely locked out for several days due to loss of access to the Microsoft Authenticator app. All sign-in and recovery attempts are failing because they still require Authenticator verification.

A critical issue is that I no longer have access to my primary Microsoft 365 email account, which means:

I cannot receive verification emails

I cannot sign in to update or change my contact details

I cannot add or manage authentication methods

I have already contacted support and received a case number, and I provided an alternative email address for contact. However, I was disconnected before the process could be completed and I have not yet been contacted.

I still have full access to my domain via GoDaddy and can verify ownership immediately if required (DNS/TXT records or other methods).

This is a business-critical issue as I currently have no access to email, admin controls, or services.

Please can this case be urgently escalated and someone contact me via my alternative email address to complete verification and reset MFA on my admin account.

I am ready to provide any information needed to regain access.

Microsoft Security | Microsoft Authenticator

1 answer

Sort by: Most helpful
  1. AI answer

    2026-04-03T18:05:16.5566667+00:00

    For a sole global admin who is fully locked out due to Microsoft Authenticator and has no alternate MFA methods, the only supported path is escalation to Microsoft’s Data Protection / Tenant Recovery teams through Microsoft 365 support.

    Based on the documented patterns for this scenario, the steps are:

    1. Use the existing support case for escalation
      Since a case number already exists, contact Microsoft 365 support again and reference that case so it can be resumed and escalated. Frontline support must route the case to the Data Protection team because there is no other global admin who can reset MFA.
    2. Explicitly state the lockout scenario
      When speaking to support (phone is required for this scenario in the documentation), clearly state:
      • This is a tenant lockout.
      • There is only one global admin on the tenant.
      • MFA is required and the only registered method was Microsoft Authenticator, which is no longer accessible.
      • The admin cannot sign in to open or manage support requests from the locked tenant.
    3. Ask to be routed to the Data Protection / Tenant Recovery team
      The documented resolution for single-admin lockouts is handled only by the Data Protection / Microsoft 365 Data Protection team. Frontline support should:
      • Open or update a service request.
      • Escalate it to Data Protection / Tenant Recovery for identity and tenant ownership verification.
    4. Prepare verification evidence
      Data Protection will require proof of identity and tenant ownership. Documentation indicates they may use:
      • Official business documentation.
      • Domain ownership (for example, DNS/TXT record updates at GoDaddy, which is available).
      • Publicly listed organization or nonprofit registration data (if applicable).
    5. If unable to reach support from the locked tenant
      If sign-in to the original tenant is impossible and the phone workflow is not progressing, documented guidance includes:
      • Contacting the regional support number and following the automated prompts until a business / admin / technical support agent is reached, then requesting escalation to the Data Protection team for a tenant lockout.
      • If the subscription is through a partner or reseller, asking the partner to open a service request on behalf of the tenant so Data Protection can engage.
    6. Alternative path via a temporary trial tenant (if needed)
      If support access is blocked because sign-in is required, guidance shows one workaround:
      • Create a new trial Microsoft 365 tenant (separate from the locked tenant).
      • From that new tenant’s Microsoft 365 Admin Center, open a support ticket.
      • In the ticket, clearly state that the issue concerns a different, existing tenant where the admin is locked out, and provide:
        • The locked tenant’s domain name.
        • The locked admin UPN/email.
        • Description of the MFA lockout and that there is only one global admin.
      • Support can then route this to the Data Protection team for the original tenant.
    7. Expected outcome
      Once Data Protection engages, they will:
      • Verify identity and tenant ownership using the provided documentation and domain control.
      • Reset or clear MFA registration on the global admin account, or otherwise restore access.
      • After that, sign-in will allow re-registering MFA and adding additional authentication methods (such as SMS, alternate email, or additional admins) to prevent future lockouts.

    Only Microsoft support (specifically the Data Protection / Tenant Recovery team) can perform this recovery; self-service options and forum moderators cannot bypass MFA or tenant security.


    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.