Office 365 status: access issues and outage reports
No problems detected
If you are having issues, please submit a report below.
Office 365 is an online productivity suite that is developed by Microsoft. Office 365 contains online and offline versions of Microsoft Office, Skype and Onedrive, as well as online versions of Sharepoint, Exchange and Project.
Problems in the last 24 hours
The graph below depicts the number of Office 365 reports received over the last 24 hours by time of day. When the number of reports exceeds the baseline, represented by the red line, an outage is determined.
At the moment, we haven't detected any problems at Office 365. Are you experiencing issues or an outage? Leave a message in the comments section!
Most Reported Problems
The following are the most recent problems reported by Office 365 users through our website.
- Sign in (67%)
- Website Down (20%)
- Errors (13%)
Live Outage Map
The most recent Office 365 outage reports came from the following cities:
| City | Problem Type | Report Time |
|---|---|---|
|
|
Sign in | 11 hours ago |
|
|
Sign in | 3 days ago |
|
|
Website Down | 10 days ago |
|
|
Website Down | 11 days ago |
|
|
Website Down | 11 days ago |
|
|
Sign in | 11 days ago |
Community Discussion
Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.
Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.
Office 365 Issues Reports
Latest outage, problems and issue reports in social media:
-
Eric Sauvageau (@RMerlinDev) reported@Diss0lution For many years now, the Office 365 installer is broken in French, instead of showing something like "90% complété" in the system notification icon, it says "90lformat error! complété" - incorrectly parsing the percent sign as a parameter. Trillon dollars company at work.
-
Catbirb Clyne (@CCatbirb) reported@ASpottyKat Im glad Im not the only one seeing these problems. We used Office 365 but Im not sure why my issued phone doesnt have it too.
-
Virtually Fun (@virtuallyfun) reported@tomhounsell @Chris123NT I'm kinda surprised that office365 still lets me host my domain and forward to my exchange server. But it's still a PITA some services just plain refuse to send to MSFT for no reason (Amazon 3fa) but I get all their ****** Amazon ads ..
-
💯 Almin Ibrahimović MBA CGA FCMI CMgr CITP MBCS (@_almin) reported@Microsoft365 To use Scout, you need: 1. to be part of the Frontier Preview Program 2. need Office 365 Copilot Access 3. need local admin privileges on the device 4. your IT Admin needs to configure Frontier. 5. your IT Admin needs to configure InTune policy for Scout 6. your local IT Admin needs to agree to (attest to) and opt-in their organisation to third party inference paths. Note: "When data is sent to GitHub Copilot, M365 data residency, retention, eDiscovery, legal hold, Data Loss Prevention (DLP), Sensitivity and Confidentiality Labels, audit, SLAs, and the Customer Copyright Commitment do not apply." Here is why this matters: If 'AI' extracts a list of sensitive intellectual property or customer data from a labeled document and pastes it into a new response, that new response has no label. A user could easily copy and paste that text into an external email or a public generative AI tool without triggering any data loss prevention alerts. Regulatory frameworks require strict auditing of where sensitive data travels. Because the new content does not inherit the source classification, your automated compliance systems lose track of that data. The responsibility shifts entirely to the end user to manually classify every single output generated by the AI session, which frequently leads to human error.
-
Balaji Swaminathan (@BalajiSwaminat) reported@Microsoft Have changed the ms pwd, now authenticator, I am not able to login, office 365 not able to login as its asking for authenticator verification code. No mail id to write for support in India. Called the customer care, disconnected after 2 minutes. Don't understand
-
Microsoft Threat Intelligence (@MsftSecIntel) reportedMicrosoft Threat Intelligence has identified a cluster of compromised websites displaying ClickFix lures and using EtherHiding, a technique associated with the ClearFake campaign. An injected Base64-encoded JavaScript contacts a BNB Smart Chain RPC gateway to query a smart contract previously reported in connection with ClearFake to fetch next-stage instructions. Content stored in a smart contract is resistant to conventional takedown or sinkholing because only the owner of the cryptocurrency wallet that deployed it can make changes. Users are presented with a fake CAPTCHA that instructs them to open the Windows Run dialog, paste clipboard content, and press Enter to execute an attacker-supplied command under the guise of verification. We’re seeing multiple forms of command obfuscation and living-off-the-land abuse, including conhost, cmd, PowerShell, pcalua, mshta, rundll32, msiexec, curl, WMI, WebDAV, and scheduled tasks. Carets split keywords, environment variables hide interpreters, and Windows run headlessly or minimized. TerminalFix lures apply the same technique but direct users to Windows Terminal or PowerShell instead of the Run dialog. This campaign demonstrates that ClickFix and TerminalFix are a high-volume initial access technique. Microsoft reports campaigns targeting thousands of enterprise and consumer devices globally every day, while some malvertising chains can funnel visitors to scam pages. Numerous actors use the technique to deliver Lumma Stealer and other infostealers, RATs such as Xworm and AsyncRAT, loaders including MintsLoader, and remote management tools. A single successful execution can expose credentials, establish persistence, enable lateral movement, and create a path to human-operated ransomware and potential domain compromise. Microsoft recommends that organizations enable Microsoft Defender network, web, and cloud-delivered protection; restrict Run and command-line tools where not required; enable PowerShell script-block logging; and implement application control. Users should never paste commands from CAPTCHAs, browser errors, emails, ads, or unsolicited support pages into Run, Terminal, PowerShell, or Command prompt. Microsoft Defender XDR provides layered protection across the ClickFix attack chain. Defender SmartScreen and Defender for Office 365 help block malicious sites, links, attachments, and fake CAPTCHA lures, while Defender for Endpoint detects suspicious command execution and outbound connections through alerts like “Suspicious command in RunMRU registry”, “Possible ClickFix activity”, “Possible initial access from an emerging threat”. Microsoft Defender Antivirus blocks malicious command execution using detections such as Trojan:Win32/ClickFix.* and Trojan:Win32/TermFix.*. Treat these alerts as evidence of a potential initial access incident: isolate affected devices, investigate credential exposure and persistence, and hunt for related activity.
-
Professor Simon (@ProfSimonOnline) reportedDid you know that personal devices can become gateways for corporate data breaches? A recent case revealed a malware attack that accessed Office 365 through a compromised BYOD. The fix? Continuous monitoring and behavior analysis! How secure is your work device? #CyberSecurity
-
Magical Joestar (@n1qh13) reported@S4m4_VT @Pirat_Nation Not a Linux problem, 99% of games do works on Linux tho but via workaround (That got simplified by steam in a remarkable way) As for softwares, welp you're not going to use Office 365. You have to adapt and find the right tools that works with your machine.
-
U Shouldn't Care (@UShouldn_tCare) reported@kmcnam1 I had to open a saved .msg file with an email inside at work. I have both versions of Outlook installed. I got error "you need Office 365 subscribtion to open that file". What is the purpose of Outlook at this point?
-
Cockatrice (@kimtaikennedy) reportedJust login to entra dashboard portal as office365 admin and delete all MFAs there and login back to email easy
-
Shadow Mann (@ShadowMann9) reported@BadalK99277 No. Windows is only still relevant because of entrenchment. Active Directory, Windows Server, Office365, Azure, all are relevant only because of entrenchment. If all software that only runs on Windows could run on Linux, then there would be no need for Windows.
-
Nick (@maietta) reportedHoly **** GoDaddy is among the worst companies on the planet. Been trying desperately to get them to fix the issue with a domain name previously owned by another company who in the past, used Office 365. Now that my client owns the domain, we can't seem to get them to remove the domain. Microsoft support has been non-existent as well. They assigned a dude to the case, but then he dropped the ball and won't reply to me.
-
Cockatrice (@kimtaikennedy) reportedJust login to entra dashboard portal as office365 admin and delete all MFAs there and login back to email easy
-
Remixedcat the catgod 💎😺🌌🎶 (@remixedcat) reported@grayzoneintel I used to use ther legacy office 365 custom domain email (old OWA and domain control panel) They even blocked important emails from seagate lyve cloud when I was getting it setup and the poor rep and her team worked hours to try to get me to get the login confimation and they even manually tried to send it and it still was rejected by microslop's servers. so I quickly switched to zoho email for my custom domain and got the important confimation email with no problem.
-
Gabriel Lawson (@glawsontweets) reportedAgentic troubleshooting report: Tricky office 365 installation issue due to, unbeknownst to me, an unmounted drive. Claude code with Opus 4.7 max tried for an hour, failed to find cause. Codex with gpt 5.5 xhigh found cause and fixed the issue in 10 minutes!
-
Lalith Kumar V (@lalitvlk) reported@AmazonHelp Please refund my money. Your Amazon team is not at all helping me regarding this issue. They are asking me to search the brand (office 365) in google and contact them. Amazon has sold a fake product. It’s your duty to refund me .
-
Bad **** (@TeaseTech) reported@nicochristie HTML attachments are one of the most abused vectors for phishing, fake login pages, and credential-harvesting scripts. Because of this: Microsoft 365 / Exchange Online Policies: Most IT administrators enable Defender for Office 365 filters
-
purana (@purana) reportedNoticed Microsoft is still shoving stuff down our throats. I have Office 365 without the AI stuff, and noticed the app now has a diamond in the top right corner on apps which is where they push to you AI upgrades.. Just give me the app without all the extra pushed crap.
-
Jelly_Babe (@jelly_beyb) reportedOffice 365 not working in android devices
-
TechThought.org (@TechThought_org) reportedA bizarre glitch in @Microsoft Defender for Office 365 is flagging legitimate @Google search links as malicious, via @BleepinComputer. 🚨 SecOps teams face false-positive chaos as enterprise filtering breaks down. Has your SOC seen this false alarm? #CyberSecurity #Cloud x .com/BleepinComputer/status/2095096870963945811
-
Mike Nicoletti (@mikenicoletti) reportedThe bear case on Office 365 boils down to one thing: does Microsoft participate in the agent-facing side of data work? Right now most people talk to agents through a terminal or some stitched-together texting setup. If Microsoft makes Teams the place you talk to your agents and share work with them, they own the interface. That interface is the moat.
-
Professor Simon (@ProfSimonOnline) reportedDid you know that personal devices can become gateways for corporate data breaches? A recent case revealed a malware attack that accessed Office 365 through a compromised BYOD. The fix? Continuous monitoring and behavior analysis! How secure is your work device? #CyberSecurity
-
Matt Diebolt (@mdiebolt) reported@domster @bradgessler Our biggest are by far the ones that support our PowerPoint for Office 365 add-in. Places where you have a JavaScript API where it’s impossible for it to be managed on the server.
-
DFIR Radar (@DFIR_Radar) reportedSilk Typhoon (HAFNIUM), a Chinese 🇨🇳 state APT, has evolved from on-prem Exchange exploitation to cloud-native supply chain attacks, most recently abusing CVE-2025-3928 in Commvault's Azure-hosted M365 backup SaaS to pivot into downstream customer tenants. - Initial access spans three vectors: CVE-2025-3928 (zero-day in Commvault Web Server, T1190), stolen API keys from privileged cloud vendors (T1195), and leaked corporate credentials found on public repos like GitHub (T1078.004). The Commvault campaign gave them client secrets for Metallic M365 backups, opening direct paths into customer M365 environments via hijacked service principals. - Lateral movement pivots from on-prem to cloud by targeting Entra Connect servers (T1210, T1078.002), enabling privilege sync between Active Directory and Entra ID. Credential dumping and key vault theft support pass-the-hash moves (T1550.002) into Azure. - Persistence relies on adding passwords to existing consented service principals or creating new Entra ID applications named to mimic legitimate Office 365 services (T1098.001, T1036). Web shells handle C2 on compromised Azure VMs (T1505.003). - Collection targets email via EWS and MSGraph APIs, plus SharePoint (T1213.002) and OneDrive (T1213.003), all through OAuth apps with admin consent, a low-noise, API-native exfiltration path that bypasses many endpoint controls. #DFIR_Radar
-
StartupHakk (@StartupHakk) reportedMicrosoft's Empire Continues to Crumble Microsoft has 450 million Office 365 users. Their flagship AI product, Copilot, has converted just 3.3% of them into paying customers. The stock is down 12 to 15 percent year-to-date, and their CFO recently circulated an internal memo calling for a “tighter” organization moving at an “increased pace.” That is corporate code for one thing: more people may be about to lose their jobs. The question I keep coming back to is this: what happens when the company that built the modern office, the one that owns your email, spreadsheets, calendar, documents, and most of your work life, starts losing its grip on the one product it bet everything on? And what does it mean when Anthropic walks directly into Microsoft’s living room, right inside Word, Excel, and Outlook, and starts doing the job better than Microsoft itself? Is the world’s most powerful tech titan actually running on fumes? What if the $13 billion bet that was supposed to secure Microsoft’s future is becoming the weight that drags it down? Why are internal memos suddenly demanding a faster, tighter organization while their flagship software struggles under the weight of its own updates? OpenAI is projecting staggering losses, Microsoft’s stock just took a major hit, and the “exclusive” moat they thought they had is starting to disappear. So the real question is: is Microsoft still an innovator, or has it become a market-paralyzing giant that has lost its way? Today, we’re looking past the marketing and into the data to see why the pillars are starting to crack.
-
John Crickett (@johncrickett) reported@PrimeAeon @Doctorthe113 @DevLeaderCa curious if you are able to comment on the server load of Office 365.
-
Hello Chicken (@badbirb) reported@EvanOwen @tmnxeq @RhoRider I get where you are coming from. It does help *if implemented well*, just like any other software or process. It is way to early to judge effectiveness since most of the businesses are just having people use ChatGPT for random stuff and using copilot in office 365. When I did software consulting many clients would tell me they were “in the cloud” when all they meant is they have office 365 subs and a terrible sharepoint inplementation. AI is the same way. It will be several *years* before AI is used effectively in enterprise scenarios.
-
David Thole (@TheDarkTrumpet) reported@omninomsky @jiya_3063 WSL helps on windows, and has been quite amazing really. That said, one big "reason" for developing "preferring" windows really comes down to corporate governance and office tools. Many businesses run off Office 365, sharepoint, etc. Yes, you can run these in a browser, but with limitations. Another big reason is governance of machines. Machines are imaged, sent out and a good 25% of their utilization is just off of software like antivirus, threat scanning, etc. It's pretty inefficient, in my view, but can be an uphill battle to change it.
-
TDR (@TheDutchRuler) reported@farzyness @bot That's why I have GrokB using Grok build cli. Same with emails. I have a mailB who uses a custom build mcp server that retrieves my emails from office 365 graph. Waiting for 4.7 though.
-
Occasional Opiner (@OccasionalOpie) reported@jimcramer $MSFT has now gone red. AI must be chowing down on Windows and Office 365.