Require Microsoft to Prevent Permanent Account Lockouts

9

Let’s get to 10 signatures!
Petitions with 1,000+ supporters are 5x more likely to win!

The Issue

 I recently lost access to my Microsoft account after a hacker broke in, added their own two‑factor authentication, and changed my recovery email. Because of Microsoft’s current policies, these changes could not be reversed — even though I had proof of ownership. My account was permanently suspended, and I lost access to everything tied to it.

Microsoft’s security features are strong, but they don’t protect users when attackers exploit those features to lock the real owner out. A simple fix would be adding a reversal option to the “security info changed” email. If 2FA or recovery information is changed without the user’s consent, there should be a limited window to undo those changes.

This problem affects many people, not just me. Cybercrime is rising worldwide, and account recovery systems need to keep up. Adding a reversal option would protect legitimate users and prevent permanent lockouts caused by unauthorized changes.

I’m asking Microsoft to update their security system to include a safe reversal option for unauthorized 2FA or recovery‑info changes. This small change would make a huge difference for users everywhere.

The Decision Makers

Petition Updates