Locked out of Azure Portal after losing Authenticator phone – personal Microsoft account still accessible

Sima Israeli 0 Reputation points
2026-09-14T16:14:54.31+00:00

I am the owner of a Microsoft personal account that I use to access my Azure subscription.

I lost the mobile phone on which Microsoft Authenticator was registered. I now have a replacement phone with the same mobile number, but there was no Microsoft Authenticator backup available from the old phone.

My Microsoft personal account itself is accessible. I know my password and can successfully verify my identity using my registered recovery email. I can sign in to account.microsoft.com and, as demonstrated by this post, I can also sign in to Microsoft Q&A using the same affected Microsoft account.

However, when I sign in to Azure Portal, after successfully completing the Microsoft account authentication, I am presented with an additional “Verify your identity” MFA screen. The only available options are:

  • Approve a request on my Microsoft Authenticator app
  • Use a verification code from Microsoft Authenticator

Both methods depend on the Authenticator registration on my lost phone. There is no option at this Azure MFA stage to use my registered recovery email or another authentication method.

I have also checked the security settings of my personal Microsoft account. Although I can verify myself using the registered recovery email, I have not found a way to reset or re-register the Authenticator method that Azure Portal is requiring.

Therefore, this does not appear to be a forgotten-password or Microsoft personal-account recovery problem. I can authenticate to my Microsoft account successfully; I am specifically locked out at the Azure/Entra MFA stage because the registered Authenticator device is no longer available.

An Azure Support request has already been raised through another accessible Azure subscription because I cannot get past MFA sufficiently to raise the request from my affected Azure subscription.

Could a Microsoft moderator please advise whether this needs to be handled by the Data Protection / Tenant Recovery team for MFA reset/re-registration, and help ensure that the existing support request is routed to the appropriate team?

This is urgent because production Azure resources are running in the affected subscription and I also need to update the subscription's payment method.

I can provide the existing Microsoft Support Case ID, affected Azure Subscription ID, billing information, account ownership information, or any other verification details privately to Microsoft Support if required.

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments

1 answer

Sort by: Newest
  1. Mohammad Wasi Haider 245 Reputation points
    2026-09-15T11:47:22.7533333+00:00

    Hi Sima,

    You have correctly identified the issue. Access to your personal Microsoft account and the Azure/Entra MFA registration are separate in this situation, so recovering the personal account does not reset the Authenticator method required by the Azure tenant. A similar Azure scenario involving a personal Microsoft account and a lost MFA device has been confirmed by Microsoft moderators.

    Since you have already opened a support case through another subscription, reply to that case and request that it be routed to the Data Protection/Tenant Recovery team for an MFA reset. They can verify your ownership and assist with re-registering authentication methods.

    Keep your case ID, subscription ID, billing information, and other ownership details private and provide them only when Microsoft Support requests them.

    Thank you, and feel free to respond back for more assistance.

    Was this answer helpful?

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.