Share via

- Azure AD Global Admin #EXT# account is locked due to MFA being sent to wrong device -

Stephane Deboudt 40 Reputation points
2026-02-13T10:45:43.7066667+00:00

I am the subscription owner using a personal Microsoft account.

My Azure AD Global Admin #EXT# account is locked due to MFA being sent to a broken device, and this even though I have restored my backed-up Authenticator on a new device.

This is a tenant lockout. I need Azure AD admin recovery since I can not access my Azure resources.

Best regards,

Microsoft Security | Microsoft Authenticator
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. kagiyama yutaka 1,165 Reputation points
    2026-02-13T22:24:46.5866667+00:00

    once an #EXT# GA gets pinned behind a dead MFA chain, the tenant’s basically sealed.

    only thing that’s ever worked for me is opening a support case from the MSA owner and asking for a forced admin‑recovery… no local workaround, I’ve tried ’em all.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.