Microsoft Investigates Widespread Microsoft 365 Outage Affecting SharePoint, Teams, and OneDrive

Microsoft is investigating a widespread Microsoft 365 outage affecting SharePoint, Teams, OneDrive, and other cloud services as a hacktivist group claims responsibility without independent evidence.
Microsoft 365 logo on a black and red background.

Microsoft is investigating a widespread outage impacting multiple Microsoft 365 services after users across North America reported issues accessing SharePoint Online, Microsoft Teams, OneDrive, Excel, Power Automate, the Microsoft 365 Admin Center, and other cloud services.

The incident, tracked by Microsoft as MO1437424, began on July 23, with thousands of users reporting service disruptions. Downdetector recorded a sharp increase in outage reports, with SharePoint accounting for the majority of complaints as organizations experienced errors, slow performance, and intermittent connectivity issues. Microsoft acknowledged the incident and said engineers were investigating service telemetry and diagnostic data to determine the source of the disruption.

Services impacted

According to Microsoft’s service health updates, the outage affected multiple Microsoft 365 workloads, including:

  • SharePoint Online
  • Microsoft Teams
  • OneDrive
  • Power Automate
  • Microsoft 365 Admin Center
  • Copilot Chat
  • Microsoft Loop

Users reported issues ranging from “Something went wrong” errors in SharePoint to degraded Teams functionality, missing images in chats, intermittent OneDrive access, and slow or unavailable administrative portals.

Microsoft begins mitigation

As the outage progressed, Microsoft said it was scaling traffic rerouting efforts and implementing mitigation measures after identifying a networking-related issue affecting service availability. Later updates indicated that a networking change had been reverted and telemetry suggested services were beginning to recover while engineers continued monitoring the environment and validating restoration with affected customers.

Hacktivist group claims responsibility

During the outage, the hacktivist group known as 313 Team, also known as the Islamic Cyber Resistance in Iraq, published posts claiming responsibility for a distributed denial-of-service (DDoS) attack targeting Microsoft’s SharePoint infrastructure. The posts included screenshots of Downdetector outage reports and asserted that multiple Microsoft 365 services had been disrupted.

At the time of publication, Microsoft had not attributed the incident to a cyberattack or confirmed that malicious activity was responsible for the disruption. No independent technical evidence has emerged to support the group’s claims.

Telegram post from 313 Team claiming responsibility for the Microsoft 365 outage and sharing Downdetector screenshots of reported SharePoint and Microsoft 365 service disruptions.
Telegram posts from 313 Team claim responsibility for the Microsoft 365 outage. Microsoft has not confirmed the disruption was caused by a cyberattack.

Investigation continues

Microsoft continues to investigate the incident and has not released a root cause analysis. Organizations experiencing issues are advised to monitor the Microsoft 365 Admin Center and Microsoft’s service health dashboard for ongoing updates as engineers work to fully restore affected services.

Picture of m00s3c

m00s3c

Moose (@m00s3c) is the author of BreachNews, focusing on data breach intelligence, dark web monitoring, and threat analysis. His work involves analyzing breach claims, reviewing leaked datasets, and tracking threat actor activity to provide clear, factual reporting.

Latest News

BREACHNEWS.COM/SUPPORT/

Support Independent News.

Help support breach monitoring, investigations, infrastructure, and reporting.

Support the site