My Azure trial account has been hacked. What do I do. They may be doing nefarious activity on my account

Quinn Roberson 0 Reputation points
2025-05-02T04:48:38.2866667+00:00

My Azure storage account azdatabricks21train has build objects that I did not create. Obviously, my account has been hacked. I fear that nefarious activity might be going on under my account and do not want any liability. Im new to Azure. Can someonr help me out on what to do? I dont even have the permissions to delete the objects. Thanks

Microsoft Entra Internet Access
Microsoft Entra Internet Access
A Microsoft Entra service that provides an identity-centric Secure Web Gateway that protects access to internet, software as a service (SaaS), and Microsoft 365 apps and resources.
54 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Sakshi Devkante 3,985 Reputation points Microsoft External Staff Moderator
    2025-05-02T09:43:36.6066667+00:00

    Hello Quinn Roberson

    I'm sorry to hear that your account information was compromised. if the account is still at your disposal, it is recommended that you also try the following ways to strengthen the security of your account Once you create Entra you will get global admin rights on your account where you can create local Global admin account which will have full access on portal and can access the tenant and perform the provided below steps. Here are the steps you need to follow to recover the account:

    1.Change your password immediately: This is the first and most important step to take. You must change your password to a strong, unique password that you have not used before. Be sure to use a combination of letters, numbers, and symbols to make it harder to Reset a forgotten Microsoft account password - Microsoft Support If you have additional verification options set up on the account that the hacker cannot access, you can follow the steps here to reset your password.

    2.If you already tried the password reset steps, you can fill out the the Microsoft account recovery form to prove your account ownership.

    It is recommended to also follow the additional steps in How to recover a hacked or compromised Microsoft account and I can't sign in to my Microsoft account to cancel your subscription and billing if possible.

    3.Enable Multi-Factor Authentication (MFA) if it’s not already on. Enable two-factor authentication: This is an additional layer of security that requires you to enter a code sent to your phone or email before you can access your account. This will help prevent unauthorized access to your account in the future: How to use two-step verification with your Microsoft account - Microsoft Support

    4.Check your recent activity page. This shows you when and where you've used your Microsoft account in the last 30 days. You can expand any activity listed to see location details and find out how the account was connected, using a web browser, phone, or other method.

    If you only see a Recent Activity section on the page, you don't need to confirm any activity. What is the activity page: What is the Recent activity page? - Microsoft Support

    4.Since you stated that you lack permission to delete the object in this situation, please contact your global administrator as soon as possible. Ask them to remove any objects that were not created by you, revoke all of your sessions, and, if necessary, temporarily disable your account.

    I hope this clarifies things.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.