Share via

Unable to Sign-in to Microsoft E5 Sandbox

KSveer 0 Reputation points
2026-04-08T17:17:03.13+00:00

Hi,

I have been using Microsoft Developer Program. Recently, due to some issue, my account linked to that in Authenticator app, started saying I needed to scan QR code, however, when I tried to open my developer's account using windows browser, it started asking about code in the authenticator.

To cut short, authenticator is asking about QR code, which I believe will be available once I login to my account, while the browser login method is asking about code in Authenticator. As I can't access both, I am stuck out of my account and have no idea what to do. Can anyone help please?

Best Regards

Microsoft Security | Microsoft Authenticator
0 comments No comments

1 answer

Sort by: Most helpful
  1. Q&A Assist
    2026-04-08T17:17:17.86+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    The account is in an MFA deadlock: the browser requires Microsoft Authenticator, and Authenticator requires reconfiguration via a QR code that is only shown after sign-in.

    Resolution depends on whether this is a work/school (Entra ID) developer tenant and whether there is another admin.

    1. If there is another administrator on the tenant
      • Ask the other admin to reset MFA for the affected account in Microsoft Entra:
        1. Go to Microsoft Entra admin center (entra.microsoft.com).
        2. Navigate to Users → All users and select the locked-out account.
        3. Open Authentication methods.
        4. Choose Require re-register multifactor authentication.
      • After this, sign in again; the portal will prompt to set up Microsoft Authenticator from scratch with a new QR code.
    2. If there is no other administrator (only one global admin)
      • This is the same scenario described in the referenced Q&A threads. In that case, only Microsoft’s Data Protection team can verify identity and reset MFA.
      • Call Microsoft Support using the regional Customer service phone numbers - Microsoft Support entry and request a ticket with the Data Protection team for an admin MFA reset on the tenant. When navigating the IVR/agent, clearly state:
        • The product is Office 365 for business / Microsoft 365.
        • It is a company/work account.
        • The caller is the only administrator and is locked out due to Microsoft Authenticator.
      • Follow their identity verification steps; once they reset MFA, sign in again and reconfigure Authenticator with the new QR code.
    3. Alternative path if phone support cannot be reached
      • Create a temporary trial Microsoft 365 tenant (separate from the locked one) as described in the Q&A context.
      • From that new tenant’s admin center, open a support ticket explicitly stating that access is needed to a different, existing tenant where the caller is the only admin and is locked out by MFA.
      • Ask support to escalate to the Data Protection team for an admin MFA reset on the original developer tenant.

    Until MFA is reset by another admin or by Microsoft’s Data Protection process, the loop between Authenticator and the browser cannot be broken.


    References:

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.