Microsoft 365 features that help users manage their subscriptions, account settings, and billing information.
Dear @Li, Wei,
I understand how stressful it can be to accidentally delete a critical multi-factor authentication (MFA) token, especially when it blocks access to your work email on a new phone.
Once an individual account token is manually deleted inside the Microsoft Authenticator app, it cannot be undone or selectively recovered on its own.
Depending on your situation, there are two distinct paths you can take right now to regain access to your account:
Option 1: Use iCloud Backup Recovery (If previously turned on)
If you had Cloud Backup enabled on your old iPhone before moving to the new one, your account tokens may still reside in your iCloud storage. Because you cannot restore accounts selectively, you must restore the full backup:
- Uninstall the Microsoft Authenticator app from your new iPhone completely.
- Reinstall the app from the App Store.
- Open the app and select Restore from backup on the initial welcome screen. Do not sign in normally.
- Log in using the personal Microsoft Account linked to your iCloud backup. (Note: If you have already added new accounts since setting up the app, this process will overwrite them with the old backup data.)
For your reference, here is the official Microsoft documentation details on how cloud recovery functions: Restore account credentials from Microsoft Authenticator | Microsoft Support
Option 2: Contact your Organization's IT Admin
Because your account is an enterprise organizational account, individual end-users do not have the administrative control to manually regenerate security codes after they are deleted.
If Option 1 does not work, please contact the IT Helpdesk directly. Inform them that you accidentally deleted your Multi-Factor Authentication (MFA) token from your device.
An IT Administrator can quickly resolve this by following these steps inside their admin portal:
- Sign in Microsoft admin center > Microsoft Entra ID.
- Go to user > find your account > navigate to your authentication methods.
- Click Require re-register multifactor authentication (or delete the old phone registration).
Once your IT Admin triggers this reset, the very next time you attempt to log in to your email from a web browser, the system will automatically prompt you with a new QR code on your screen. You can then scan this with your mobile Authenticator app to re-link your email immediately. For more details, please refer to this document: Manage authentication methods for Microsoft Entra multifactor authentication
Please let me know if you are able to reach out to your IT department or if you have any questions about the backup recovery process.
If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.