cross-posted from: https://lemmy.world/post/12063839

Someone keeps trying to access my MS account

Like the title says, I’ve got yesterday an email with a code to access my Microsoft account and that made me suspicious because I wasn’t trying to login to my account. When I looked at the login attempts I saw that someone else was trying to access my account, I changed my password, activated TFA. Thinking of going through and buying a physical key like yubico to further secure my account. Any tips are appreciated.

  • Kaiyoto@lemmy.world
    link
    fedilink
    arrow-up
    5
    ·
    edit-2
    10 months ago

    I have the same issue. For me it’s mainly some ip address in Russia but it bounces around. I’ve had the 2FA enabled on my account for at least a year now. I have a unique, random password for it. Recently (like a month or two ago) the 2FA app popped up with a message to click on the number to verify or deny. I knew it wasn’t me so I denied it.

    I was worried someone had managed to guess my long ass password but I fiddled around with it and it’s possible to get that 2FA prompt when you are trying to do a password recovery. So I just let it ago and haven’t gotten any others since. I still feel like I should chang my email but based on what others are saying it doesn’t seem like it will make a difference.