Share

UPDATE: March 10, 2025 — Thousands of users across the United States are reporting that they cannot complete device verification on several major online services, leaving them locked out of email, banking, and social media accounts. The error, which displays a generic "Verification failed. Please try again." message, began appearing around 9 a.m. EST today, according to Downdetector charts. While the exact cause remains under investigation, security experts point to a possible backend authentication server overload or a glitch in third‑party verification tools.
Device verification is a common security step that asks a user to confirm a new login attempt — often via a code sent to a phone or email — before granting access. It prevents unauthorized logins even if passwords are stolen. However, when the verification step itself fails, users are stuck in a frustrating loop.
Today’s failure appears to hit both mobile and desktop devices. Affected platforms include a large web‑based email provider, a major social network, and two financial apps. Users report that they wait up to 30 seconds only to see the “Verification failed” prompt, with no option to retry using a different method.
The disruption has real consequences. Small business owners who rely on cloud‑based invoicing and collaboration tools cannot access their workspaces. One freelance graphic designer from Austin, Texas, told us, “I was in the middle of submitting a client project. Now I’m locked out of my account and my deadline is in two hours.”
According to a survey conducted by our team this morning (over 500 respondents via social media), 42% of affected users said they had not backed up critical files locally. The outage underscores the dependency on a single authentication channel.
We reached out to two cybersecurity analysts for an exclusive take.
Dr. Lina Chen, former Google security engineer and now a visiting scholar at Stanford, explained that the pattern of errors suggests a synchronization failure between the front‑end verification interface and the back‑end token service. “When millions of users trigger a verification request simultaneously — for example, after a forced password reset — the backend can treat valid tokens as expired, generating a false ‘failed’ response,” she said.
Marcus O’Reilly, a penetration tester specializing in authentication protocols, added that many platforms use third‑party verification SDKs that are rarely updated. “A one‑line change in an API endpoint can break every client that hasn’t updated in the last 48 hours. We’ve seen this exact pattern twice before this year.”
Neither expert could confirm a coordinated attack, but both urged users to avoid repeated retries, which could trigger rate‑limiting locks.
While waiting for a platform‑wide fix, dozens of users have found temporary workarounds. We verified these steps with at least three independent reports:
We contacted the three most affected platforms. Two have not publicly responded; the third, a cloud storage giant, issued a short statement at 11:45 AM EST:
“We are aware of an issue preventing some users from completing device verification. Our engineering team has identified the root cause and is deploying a fix. We expect full resolution within three hours. No accounts have been compromised.”
Downdetector data shows the outage curve has plateaued, suggesting the fix may already be rolling out. As of this writing (2 PM EST), a small percentage of users report being able to log in again.
This incident highlights a growing tension between security and convenience. Device verification is meant to be a safety net, but when it breaks, it erodes user trust. Security expert O’Reilly argues that platforms should always offer a fallback channel — like SMS, email, or hardware key — that does not depend on the same flawed API.
“Relying on a single verification vendor is like putting all your eggs in one basket,” he said. “Today’s outage was probably not malicious, but it shows how fragile the ecosystem is.”
Our investigation also found that at least two of the affected services share the same underlying verification provider, which may be the common link. We have reached out to that provider for comment but have not yet received a reply.
– Check the provider’s status page to confirm the outage is known. – Do NOT click suspicious links claiming to fix the verification — scammers often exploit such outages with phishing attempts. – Enable a secondary verification method (e.g., add a phone number or a security key) after you regain access, to reduce future risk. – Back up your account recovery codes in a secure offline location.
We will update this article as new information becomes available. For now, the best advice is patience and using one of the workarounds above. Most platforms are expected to be stable by late evening.
This article includes reporting from interviews with cybersecurity experts, a crowdsourced survey, and real‑time outage data from Downdetector. If you have experienced this issue, share your story in the comments below.









