A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
There is no way to roll back or recover an older Microsoft Authenticator backup once it has been overwritten with a new (empty) backup.
Key points from how Authenticator backup works:
- Authenticator stores a single cloud backup per platform and per backup account (one backup for iOS, one for Android).
- When Cloud Backup/iCloud backup is turned on again and a new backup is created, the previous backup for that backup account and platform is replaced.
- For 3rd‑party accounts (such as company services using TOTP codes), the backup contains the one‑time password configuration so it can be restored, but only as long as that backup still exists. Once deleted or overwritten, it cannot be restored.
- If the backup account itself cannot be accessed, support cannot recover the Authenticator data; the only option is to re‑add the accounts manually.
Because the old backup has been overwritten by the new empty backup, the lost 2FA entries in Authenticator cannot be restored.
To regain access to each affected company account, the only path is to go through the account‑specific recovery process for each service, for example:
- Use the service’s “I can’t use my authenticator app” or “lost 2FA device” flow.
- Use any backup methods that service offers (backup codes, SMS, email, security keys, or recovery contacts) if they were set up.
- If no backup method works, contact each company’s support or IT/help desk and request that they reset or remove the existing 2FA registration on the account so a new Authenticator registration can be configured.
For future protection once access is restored:
- Turn on backup in Authenticator only after the app contains all required accounts, and avoid signing in with the same backup account on a second device unless intentionally maintaining that device.
- For Android: open Authenticator → Settings → enable Cloud Backup and confirm the correct Microsoft account.
- For iOS: open Authenticator → Settings → under Backup, enable iCloud backup.
- Where possible, configure additional sign‑in methods (backup codes, SMS, email, security keys) on each service so that loss of Authenticator does not lock out the account.
References: