A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
Microsoft Authenticator account data can only be recovered if backup was enabled on the old device and the same type of device is used for restore.
There are two cases:
- If backup was enabled
- On Android:
- Install Microsoft Authenticator on the new Android device.
- Open the app and, before signing in to any account, select Restore from backup or Begin recovery.
- Sign in with the same personal Microsoft account that was used as the backup account.
- The saved credentials will be restored. For accounts that show Sign in to restore your account or Action required, tap them and sign in again with password plus email/phone verification.
- On iOS:
- Ensure iCloud Drive, iCloud Keychain, and iCloud Backup are enabled on the iOS device.
- Install Microsoft Authenticator.
- Sign in to each account in Authenticator to complete the restore.
- Note: Backup and restore only work between the same device type (iOS→iOS or Android→Android), not across platforms.
- On Android:
- If backup was not enabled (your situation)
- Authenticator cannot restore the old codes or configuration without a backup.
- Each account must be added again manually using that service’s own security/recovery process. For example, sign in to each Microsoft, work/school, or third‑party account (Amazon, Facebook, Gmail, etc.) in a browser and follow their “security,” “two-step verification,” or “lost authenticator” recovery options to register Authenticator again.
- If unable to restore because the backup account (for Android cloud backup or iCloud on iOS) itself is inaccessible, use the appropriate account recovery:
- For Microsoft backup accounts on Android, use the Microsoft account sign-in helper.
- For iCloud issues on iOS, contact Apple Support.
What is and is not restored
- Microsoft personal accounts:
- One-time password (30-second) codes are restored.
- Passwordless sign-in is not fully restored; only the account name is restored and sign-in must be completed again.
- Work or school accounts:
- Only the account name is restored; sign-in is required again.
- Third-party accounts (Amazon, Facebook, Gmail, etc.):
- One-time password codes are restored if they were in the backup.
If there is no backup and no alternative sign-in/recovery methods configured on the individual services, those services’ support channels must be used to regain access, as Authenticator itself cannot recreate lost account data.
References: