A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
There is no supported way to “locate” or recover a missing Microsoft Authenticator backup beyond what is already stored in the configured cloud backup account. If the app on the new device shows no backup, either:
- The backup was never successfully created or kept up to date, or
- The backup is tied to a different backup account/device type than the one currently signed in, or
- Access to the backup account itself is blocked.
From the available guidance:
- Authenticator backups are per device type and backup account
- Only one backup account per device type is supported (for example, one Microsoft personal account as the recovery account).
- Backups created on Android can only be restored on Android, and iOS backups only on iOS.
- If signed in with the wrong backup account on the new phone, the backup will not appear.
- What is actually backed up
- Microsoft personal accounts:
- If configured only with one-time password (OTP) codes, those codes are available once restored.
- If configured for passwordless sign-in, only the account name is backed up; after restore, sign-in is required again.
- Work or school accounts: only the account name is backed up; sign-in is required again after restore.
- 3rd‑party accounts (Amazon, Facebook, Gmail, etc.): OTP codes are backed up and available once restored.
- Microsoft personal accounts:
- When a backup cannot be restored
- If the backup cannot be restored because the backup account itself cannot be accessed, support cannot recover those Authenticator account credentials. The only supported path is to regain access to the Microsoft backup account using the Microsoft account sign‑in helper, and then either restore or re‑add accounts manually.
- If restoration fails for other reasons (for example, no backup is found for the signed‑in backup account), the guidance is to add the accounts again.
- Troubleshooting missing backup on a new device (Android/iOS)
- Ensure the backup was actually created and is enabled on the old device (for Android: in Authenticator → Settings → under “Backup”, Cloud Backup must be on and signed in with the intended Microsoft account; for iOS: iCloud Drive/Keychain/Backup plus Authenticator in “Saved to iCloud” must be enabled and Authenticator version 6.8.33 or later used, and the app opened at least once before switching phones).
- On the new device, if the backup does not appear, uninstall and reinstall Authenticator, then sign in with the same backup account used on the old device and try restore again.
- If still locked out of MFA for a tenant or work/school account
- For work/school or Microsoft 365 tenants where the user is the only administrator and is locked out due to MFA (for example, phone lost or Authenticator not accessible), the documented path is to contact Microsoft’s Data Protection team via Microsoft Support (Customer service phone numbers – Microsoft Support) and have a support ticket raised. That team can verify identity and reset MFA/authentication methods for the tenant admin.
Given this behavior:
- Changing the password or toggling passwordless does not delete an existing Authenticator backup; however, if the backup account cannot be accessed or if a different backup account is used on the new phone, the backup will not be visible.
- Removing the Authenticator method from the Security section of the Microsoft account does not restore or expose a missing backup; it only removes that method as a sign‑in factor and would require re‑enrollment.
- If the backup truly cannot be restored (no backup found for the correct backup account, or backup account inaccessible), the only supported option is to re‑add each account’s MFA configuration individually, using each service’s recovery process.
References:
- Back up account credentials in Microsoft Authenticator
- Back up your accounts in Microsoft Authenticator
- Microsoft Authenticator FAQs
- Restore account credentials from Microsoft Authenticator
- Recover user authentication methods using Microsoft Entra Backup and Recovery (Preview)
- I have a Micrsoft business account and I am the admin and the only user registered under this account. I can't log in because i have replaced my phone and the authenticator doesn't work. - Microsoft Q&A
- Microsoft Authenticator app doesn't show 6-digit OTP code - Microsoft Q&A
- Requesting a Tenant Admin MFA Reset - Microsoft Q&A
- Severity A Situation - Locked out of global admin account (MFA) - business down - Microsoft Q&A
- My personal hotmail account hacked by hacker with authentication app enabled. - Microsoft Q&A