Microsoft Authenticator infinite loop

Johann Skjoldborg 0 Reputation points
2026-04-22T07:05:27.1233333+00:00

I can't get into my microsoft account because I got a new phone and got logged out of the authenticator on the phone, and for some reason in the same instance also got logged out of all my Microsoft services. I'm therefore writing from a secondary profile, since I also needed to log in to write in here. The problem is that when I need to log in to access my microsoft profile in any microsoft service I'm then being send to the authenticator phase, however I don't have access to my authenticator due to getting a new phone. When I then try to access the authenticator app through my phone, I need to use a code inside the authenticator app to login, which means that I'm stuck in a loop of needed the authenticator to login to the authenticator which is impossible. It says "use a different method to login" however these are both also inside the authenticator app.

Microsoft Security | Microsoft Authenticator

1 answer

Sort by: Most helpful
  1. AI answer

    2026-04-22T07:05:54.07+00:00

    The account is locked in an MFA loop because all available verification methods are tied to Microsoft Authenticator on the old phone and there is no alternative method available outside the app.

    In this situation, self-service recovery is not possible. The only supported way to regain access is to have the MFA methods reset by Microsoft support, specifically the Data Protection team, if there is no other administrator who can reset MFA.

    Use the following approach, depending on the account type:

    1. If this is a work or school (Microsoft 365 business/education) account and there is at least one other admin in the tenant:
      • Another global admin must sign in to the Microsoft 365 admin center and reset the MFA methods for the affected account so that new methods (including a fresh Authenticator registration) can be configured.
    2. If this is a work or school account and there is only one admin (the locked-out account):
      • Contact Microsoft support by phone via the global customer service numbers and clearly state that this is an admin lockout due to Microsoft Authenticator and that there is no other administrator.
      • Ask for a service request and escalation to the Data Protection team to perform an admin MFA reset. Be prepared to verify identity and tenant ownership with business documentation.
      • If direct phone support cannot be reached, create a new temporary Microsoft 365 trial tenant, go to the admin center of that new tenant, and open a support ticket requesting the Data Protection team to help regain access to the original tenant, providing the locked tenant’s domain, admin UPN, and error details.
    3. If this is a personal Microsoft account and no other sign-in method (SMS, email, security key, etc.) is available outside Authenticator:
      • Use the account recovery and password reset options provided for personal accounts and follow the prompts to prove identity using whatever alternative contact details are still on file. If all methods route back to Authenticator and cannot be used, support agents cannot override verification or send codes directly; recovery depends on the available self-service options.

    Until at least one sign-in method that does not depend on the current Authenticator instance is added (for example SMS, email, or a new Authenticator registration), the loop will persist. The resolution is therefore to have MFA reset by an admin or, if none exists, by Microsoft’s Data Protection team after identity verification.


    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.