Microsoft website lacking login history.

Bastian Govinda Traunfellner 0 Reputation points
2026-05-22T08:37:26.7333333+00:00

Hi,

who’s in charge at microsoft security? The website is built so badly.

my account was compromised, there’s no way to say hey this wasn’t me (that’ standard for other companies).

then i changed password as it was the only option available, then i wanted to see older logins to report them but it’s not possible.

clicking on any link needs you to login again.

seems very amateurish programmed like some intern maybe? And all that for a very important risk assessment site.

very sad to see such bad leadership.

cheers

Bastian

Microsoft Security | Microsoft Authenticator

1 answer

Sort by: Most helpful
  1. AI answer

    2026-05-22T08:37:43.4433333+00:00

    For personal Microsoft accounts, there are built-in ways to review sign-in history and flag unusual activity, but they are accessed through specific pages rather than directly from every security email or screen.

    For a personal Microsoft account:

    1. Review recent sign-ins and flag “this wasn’t me”
      • Go to the Security basics page: https://account.microsoft.com/security
      • Select Review activity. This opens the Recent activity page, which shows sign-ins for roughly the last 30 days, including location, device, and app details.
      • For entries in the Unusual activity section, expand an item and select This wasn’t me.
      • For entries in Recent activity, expand an item and select Secure your account if it was not you.
        This is the supported way to tell Microsoft that a sign-in was not yours and to trigger the guided account‑securing flow.
    2. If the account was accessed by someone else
      • After reviewing activity, return to the Security basics page and select Change password. Use a strong, unique password.
      • If sign-in is no longer possible (for example, the attacker changed the password or security info), follow the steps in When you can't sign in to your Microsoft account and use the recovery options there.
    3. If you receive “unusual sign-in” alerts
      • Microsoft sends alerts when sign-ins occur from new locations or devices. These alerts direct to security pages where a verification code is requested to confirm it was really the account owner.
      • If unsure whether an email is legitimate, verify the sender. Legitimate unusual-activity alerts come from the Microsoft account team at ******@accountprotection.microsoft.com.

    For work or school accounts (Microsoft Entra / Azure AD):

    1. View detailed sign-in history
    2. Interpreting sign-ins
      • A successful sign-in from an unfamiliar location or device can indicate compromise; change the password and review security info.
      • An unsuccessful sign-in may be a typo or an attacker guessing the password. In that case, enabling multi-factor authentication (two-step verification) is strongly recommended so a password alone is not enough to access the account.
    3. Searching and confirming unusual activity
      • On the Review recent activity page, use the search bar (for example, search for Unsuccessful) to filter specific events.
      • Sign-ins flagged as unusual can be confirmed directly in the My sign-ins page.

    The sign-in history is therefore available and can be used both to review older logins (within the retention window) and to explicitly indicate that certain activity was not performed by the account owner, which then drives the remediation steps.


    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.