Some Entra ID accounts were being flagged as having compromised credentials Seems it was just Microsoft “inadvertently generat[ing] [false] alerts” However, users were getting different explanations ...
Microsoft confirms that the weekend Entra account lockouts were caused by the invalidation of short-lived user refresh tokens that were mistakenly logged into internal systems. On Saturday morning, ...