Microsoft is investigating a Teams service incident that is preventing some users from making or receiving calls. The company directed Microsoft 365 administrators to incident TM1475580 in the admin center; its public status update does not identify affected regions, customer segments, call types, root cause, or a restoration timeframe.
Organizations should confirm tenant-specific impact through Microsoft 365 service-health updates, preserve relevant network, endpoint, and identity telemetry, and use approved alternative communications channels while the issue is investigated. Microsoft has not characterized the disruption as a cyberattack or account compromise, but defenders should remain alert for phishing and unsanctioned collaboration-tool use during the outage.

See attribution, scope, and your downstream exposure.
1 event from the most recent confirmed update back to the earliest known activity.
Microsoft disclosed that it was investigating a service incident preventing some Microsoft Teams users from placing or receiving calls. The company directed administrators to incident TM1475580 in the Microsoft 365 admin center; the public advisory did not provide affected regions, root cause, or a restoration timeline.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
cryptika.com
Open sourcecybersecuritynews.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.