Microsoft Defender for Office 365: DMARC Policy Handling

31 juillet 2023 Par

In order to better protect our customers from exact domain spoofing attacks and improve deliverability of email, Microsoft is making changes to how we handle DMARC p=reject and p=quarantine. For the enterprise customers, Microsoft is making updates to how DMARC policy-based reject can be handled. This change will help Security Administrators be able to choose … […]

What’s new with Microsoft Entra ID Protection

31 juillet 2023 Par

In this increasingly digital world, identity is the most attacked surface area, and the sophistication and frequency of attacks continue to rise. Manual investigations and responses can’t keep pace. We need to think differently about how we protect identities from compromise and respond rapidly to emerging threats.   Microsoft Entra ID Protection (recently renamed from Azure … […]

Deploy new Microsoft Teams with Microsoft 365 apps

31 juillet 2023 Par

Starting in September 2023, Microsoft will begin including new Microsoft Teams as part of the new and existing installations of Microsoft 365 apps for Windows depending on the schedule provided in this post. Currently, users can install the new Teams by using the Try the new Teams toggle switch in classic Teams or having administrators … […]

Authenticator number matching to be enabled for all users

3 mars 2023 Par

When this will happen: Beginning May 8, 2023 How this affects your organization: To prevent accidental approvals, admins can require users to enter a number displayed on the sign-in screen when approving an MFA request in the Microsoft Authenticator app. This feature is critical to protecting against MFA fatigue attacks which are on the rise. … […]

Mitigate risks with application block in Microsoft Defender Vulnerability Management [Public Preview]

3 mars 2023 Par

Remediating vulnerabilities in organizations takes time so it’s essential to have effective risk management strategies in place. We know that addressing software vulnerabilities can be challenging due to a variety of factors. To help with risk mitigation, Microsoft Defender Vulnerability Management (MDVM) users can leverage the application block feature to take immediate action to block … […]

Microsoft Defender for Office 365: Upcoming Changes to Intra-Org Messages

3 mars 2023 Par

Microsoft will be updating the way intra-organizational SCL ratings are assigned for intra-organizational messages. When this will happen: Changes to logging intra-organizational messages will begin rolling out in early April and is expected to be complete by late June. How this will affect your organization: All intra-organizational messages are currently marked with SCL -1 (bypass … […]

Defender for Endpoint and disconnected environments. Which proxy configuration wins?

28 février 2023 Par

This article is a follow-up to a previous one discussing conflicting proxy configurations and how Microsoft Defender for Endpoint behaves in these situations. The first article can be found in here. As outlined in the documentation, Defender for Endpoint supports three different types of proxy configurations: However, when these configurations are mixed, it can cause confusion … […]

Announcing device isolation support for Linux [Public Preview]

28 février 2023 Par

Overview  Some attack scenarios may require you to isolate a device from the network. This action can help prevent the attacker from controlling the compromised device and performing further activities such as data exfiltration and lateral movement. Just like in Windows devices, this device isolation feature disconnects the compromised device from the network while retaining connectivity to the … […]

Customize login pages in Attack Simulation Training

5 janvier 2023 Par

Attack Simulation Training is an intelligent phish risk reduction tool that measures behavior change and automates deployment of an integrated security awareness training program across an organization. It is available with Microsoft 365 E5 or Microsoft Defender for Office 365 P2 plan. As per the previous experience, users were directed to the Microsoft curated credential harvest login … […]

Cross-tenant User Data Migration [General Availability]

8 novembre 2022 Par

Historically, admins that needed to move mailboxes between Microsoft 365 tenants were required to export or offboard the mailbox to on-premises and then import or onboard the mailbox to a new tenant. Today, Microsoft is thrilled to announce that cross-tenant user data migration is now generally available. Specifically, the cross-tenant mailbox migration and cross-tenant OneDrive migration features previously in … […]

Intune – New device control capabilities to manage removable storage media access

8 novembre 2022 Par

Intune is excited to announce new device control capabilities that allows greater flexibility for enhanced endpoint security. This feature allows IT admins to manage access and use of removable storage devices, such as USB and solid-state drives, on Intune-managed devices. Admins will be able to configure the allow, block, or auditing permissions to read, write, … […]

Intune – New device control capabilities to manage removable storage media access in Microsoft Intune

8 novembre 2022 Par

Intune can integrate data from Mobile Threat Defense (MTD) solutions such as Microsoft Defender for Endpoint and other non-Microsoft MTD partners as an information source for unenrolled devices using Intune app protection policies (APP). Admins can use this information to help protect corporate data within an Intune protected app and issue a block or selective wipe through APP conditional launch settings … […]

Windows Hello for Business Hybrid Cloud Kerberos Trust [General Availability]

7 novembre 2022 Par

Microsoft is excited to announce the general availability of hybrid cloud Kerberos trust, a new Windows Hello for Business deployment model that enables a passwordless sign-in experience. Why passwordless and Windows Hello for Business? Windows Hello for Business is a modern, strong, two-factor authentication method that is a more secure alternative to passwords and has … […]

[MDO] Password protected download of quarantined messages

10 août 2022 Par

With this change Microsoft is giving the ability to password protects items they download from quarantine. Microsoft wants users to be confident that the items they are downloading to their systems will not execute involuntarily without their consent, and this capability will allow them to safely transport the items to external analysis tools. When this … […]

Change to soft-deleted period for inactive mailboxes

10 août 2022 Par

When all holds and retention policies are removed from an inactive mailbox, it becomes soft-deleted and remains in Exchange for a period of time to allow for recovery before permanent deletion. Based on customer feedback, and to maintain consistency with other solutions, Microsoft will be changing this period to 30 days (from current 183 days). … […]

Upcoming behavior change to the “DoNotRewrite” List

10 août 2022 Par

With the deployment of the Tenant Allow/Block List, as being the single source of truth for Tenant Allows, other mechanisms for Tenant Allows are being removed. This will give SecOps teams one place to manage all Tenant Allows. Today, “DoNotRewrite” list is used to Skip wrapping URLs Detonation(SONAR) Verdicts. The intended purpose of “DoNotRewrite” is … […]

Maintain protection when creating PDFs [Preview]

10 août 2022 Par

Please review the blog post: Apply sensitivity labels to PDFs created with Office apps for additional details. Coming soon to public preview, Microsoft is introducing the ability to maintain label and protection for PDF files created from Microsoft Office apps.   When this will happen: Public preview: rollout will begin in late June and is expected to … […]