Fix Microsoft 365 Admin Account Locked Due to Lost Two-Step Verification
Question details
A business administrator needs to regain access to their Microsoft 365 admin account because the two-step verification codes are being sent to an old, inaccessible phone number.
- Product
- Microsoft 365
- Device & OS
- not provided
- Scenario
- Attempting to log into the Microsoft 365 admin portal without access to the phone number configured for two-step verification and with no alternate methods available.
- Observed behavior
- The user is completely locked out of the admin account and cannot manage their business tenant, domains, or billing.
Before reaching out to support, gather your Microsoft 365 tenant information, proof of domain ownership, and recent billing details, as these will be strictly required to verify your identity.
Contact Microsoft 365 Business Support for Administrator Account Recovery
Use this official support channel to bypass the multi-factor authentication lock without losing your existing business data, custom domains, or billing history.
It is crucial that you do not simply create a new tenant account. A new account will not automatically include your old files, domain, billing, or user mailboxes, which can severely disrupt your business operations.
Because no alternate authentication methods were set up, you cannot reset the two-step verification yourself. Microsoft's Data Protection team must intervene to manually remove the old phone number from your admin profile.
Visit the official Microsoft website and locate the Microsoft 365 Business support phone number specific to your country or region.
Call the support line and explicitly state that you are the business administrator locked out due to a lost two-step verification device, and request an administrator account recovery.
Provide the support agent with your tenant information, billing invoices, and verify your domain ownership when prompted by the Data Protection team.
Once the Data Protection team grants you access, immediately log in and update your security information with a valid phone number and an authenticator app.
Keep Your Team Productive with WPS Office
While resolving Microsoft 365 administrative lockouts can be a time-consuming process, you don't have to halt your team's productivity. WPS Office is a lightweight, fully compatible, and free alternative to Microsoft Office that allows you to continue working on your documents locally without requiring complex tenant administration.
- 1. Download the Installer: Visit the official WPS Office website and click the download button for your operating system.
- 2. Install the Software: Run the downloaded installer and follow the quick on-screen instructions to set up the suite.
- 3. Open Your Files: Launch WPS Office and open your existing Microsoft Office documents to continue working immediately.

Frequently Asked Questions
What happens if I create a new Microsoft 365 account instead of recovering the old one?
Creating a new Microsoft 365 tenant account means starting from scratch. Your existing files, active subscriptions, mailboxes, and custom domains will not automatically transfer, and your domain will remain locked to the inaccessible account.
How long does the Microsoft 365 admin account recovery process take?
Administrator account recovery is handled by Microsoft's Data Protection team. Because they must thoroughly verify your identity to prevent unauthorized access, the process can take anywhere from a few days to a couple of weeks.
Can I bypass Microsoft 365 two-step verification without calling support?
If you are the only global administrator for the tenant and have not previously configured any alternative verification methods (such as a backup email, an authenticator app, or a secondary phone number), you cannot bypass the lock yourself.
What is an emergency administrator account?
An emergency administrator account (or 'break-glass' account) is a highly privileged, cloud-only account usually ending in .onmicrosoft.com. It is intentionally excluded from strict conditional access policies like MFA and is used exclusively to regain access if the primary admin accounts are ever locked out.




