Azure Action group email OTP page looks like a device code flow phishing attempt

Pieter Jan Coeckelbergh 10 Reputation points
2026-09-16T14:17:13.81+00:00

Hi,

I've gotten an email verification for adding an email address to an action group in Azure. Altough the email is sent from a well known email address azure-noreply@microsoft.com, the URL in that mail feels more like a phishing attempt then a real microsoft product:

  1. URL is https://userlinks.azns.microsofticm.com/ which apparently is an internal microsoft product not a well known microsoft public url like portal.azure.com. This URL isn't mentioned in any docs related to the recent email validation change.
  2. UX of that page looks like it was made in a hurry and doesn't align with the quality of a microsoft product.

User's image

Please confirm if this is the actual OTP url and page and modify, document etc. so this doesn't look like a phishing attempt. It's 2026 Microsoft, we can't have solutions go live like this.

Azure Monitor
Azure Monitor

An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.