Search4 Results

Warns the District community about an active phishing campaign, tracked as EvilTokens, that abuses the Microsoft device sign-in flow to capture Microsoft 365 access tokens even when multifactor authentication is completed. Explains how to spot the attack, what to do, and how to report a suspected compromise.
Install Microsoft Authenticator, enroll it for employee MFA, add a backup method, and learn how to approve Solano sign-ins.
Troubleshoot missing Microsoft Authenticator notifications or verification codes, denied or expired requests, app lock, blocked sign-ins, and unexpected MFA prompts.
Move MFA to a new or replacement phone, remove the old registration, or request identity verification when no working sign-in method remains.