Hello,
A personnal Microsoft account got hacked. I managed to enable MFA (totp with google authenticator), change password, disconnect all sessions. The problem is some oauth of app access remains. The mailbox is still showing new drafts every second.
And the mailbox rule created by the hacker that transfers all mails to him got recreated after I disconnected all the sessions.
The problem is, now even if I’m the only one to know the new password and have the MFA (totp and sms), the account is locked for too many password errors… i cannot investigate deeper for oauth accesses… and MS won’t understand there is a problem (their wizard is not usefull).
Any idea about how to delete all unwanted access to this ms account and any way to unlock it faster?
Pc seams ok. Only the mailbox and psnetwork account seams touched.
Thank you