Microsoft ZAPs Teams notification emails

An interesting incident occurred yesterday in Microsoft land – Teams notification emails suddenly started appearing as containing malware. More specifically, few of the images embedded in the message body were being detected as malicious and replaced by the ZAP feature. A sample message is shown below: As you can see, …

Continue readingMicrosoft ZAPs Teams notification emails

Conditional Access has a new home – meet the Azure AD Security blade

In what seems an effort to drive adoption for the Azure Security Center, Microsoft has made some reorganizational changes in the Azure AD blade. With the added benefit of puzzling and annoying users by failing to provide any kind of indication or announcement for the changes. As it took me …

Continue readingConditional Access has a new home – meet the Azure AD Security blade

Submit spam, phish and malware messages via the Security and Compliance Center

A new functionality has appeared over at the Office 365 Security and Compliance Center, namely a UI-driven method for submitting messages that made it past the various EOP layers and into user’s mailboxes. Found under the Threat management -> Submissions tab, and accessible directly via https://protection.office.com/reportsubmission, the page looks very …

Continue readingSubmit spam, phish and malware messages via the Security and Compliance Center