Please be advised of an ongoing incident currently affecting Microsoft accounts across multiple organizations, including some of our clients. Our team has identified a pattern of repeated automated login attempts originating from Microsoft Azure CLI activity. These attempts are occurring at a very high frequency and can trigger account lockouts across Microsoft 365, Entra ID, and any connected single sign-on (SSO) applications. The activity is not isolated to any one environment but is being reported broadly across the industry. *What this activity is* For reference, the Azure Command Line Interface is a legitimate Microsoft tool that allows users and applications to sign in without a web browser. In this case, there have been reports of automated processes attempting to sign in rapidly in the background using that method. Although these login attempts are unsuccessful, the repeated activity triggers Microsoft's automated security protections, which results in temporary account lockouts. *What this means for you* • Some users may experience unexpected Microsoft account lockouts. • Lockouts may reoccur shortly after passwords are reset. • The activity is occurring at the authentication level, before standard security controls such as Conditional Access policies are applied. We are actively monitoring the situation and will provide further updates as they become available.
Last update on
Core functionality has been restored but we are aware of known and ongoing issues in FedRAMP workspaces with Codex, workspace analytics, conversation search, searching for custom GPTs, ChatGPT user invites, and the Compliance Logs Platform download endpoint. We are working to resolve these issues and will share further updates we have more information available.
Last update on
Twilio customers may be experiencing User Authentication Identity SNA missing redirects in the Philippines. Our team has identified the cause, and is working to resolve the issue. We will provide another update in 16 hours or as soon as more information becomes available.
Last update on
Monitors
Codex, workspace analytics, conversation search, searching for custom GPTs, ChatGPT user invites, and Compliance Log Platform download endpoint not working in FedRAMP workspaces
OpenAI
User Authentication Identity SNA Missing Redirects in Philippines
Twilio
Adobe Cloud Services
Microsoft 365 suite