I've been receiving around 20 to 30 authenticator sign-in requests each day for my Microsoft account, but when I check my account, there's no new activity showing. Has anyone else experienced this? How do I figure out what's going on?
2 Answers
It might be a case of someone trying to perform an MFA fatigue attack. They could have your email and are repeatedly requesting access. You can change your primary email address through Microsoft, which can help reduce these requests. Here's a link to manage your email addresses: [link]. There’s also a guide on how to do it: [link]. Switching the email will stop those attempts while still allowing you to receive emails at the old address.
It sounds like someone might have your login details, but since you have two-factor authentication enabled, they can't access your account without the code from your authenticator app. You should definitely change your password to be safe.

I just changed my password yesterday, but I'm still getting these requests. It’s frustrating! I’ll consider changing my email.