Security News

Office 365 bug: Exchange Online, Outlook emails sent to junk folder
2021-05-26 21:45

Microsoft is investigating an Office 365 issue causing Outlook and Exchange Online emails to skip recipients' inboxes and being sent their junk folders instead. "We're investigating an issue in which email is being sent to the junk folder," Microsoft shared on the company's Microsoft 365 Status Twitter account. The Microsoft 365 Service health status page is currently directing customers to the Microsoft 365 Status Twitter account for more details regarding this ongoing incident.

Computer Misuse Act: Tell the Home Office infosec needs a public interest defence in law, says CyberUp campaign
2021-05-26 09:17

Businesses operating in the word of infosec have been urged to write to the Home Office and support a public interest defence being added to the Computer Misuse Act. On a TechUK-organised call to discuss industry's response to the review of the act, British and overseas companies operating in the UK were urged by both the industry body and the Cyberup campaign to tell UK.gov what they think the law ought to say.

Returning to the office? Time to reassess privileged access permissions
2021-05-24 04:30

Organizations need to revisit their privileged access permissions and double down on their security strategy to protect their data and people from being exposed in the next big data breach. As companies move to a hybrid model, it's important to look closely at which employees may have been granted additional access during the shift to working remotely and reassess who has privileged access now to minimize this threat.

NETGEAR extends Orbi Pro portfolio with WiFi 6 Mini for small businesses and home-based offices
2021-05-13 00:30

The Orbi Pro WiFi 6 Mini Dual-band Mesh System with its attractive price point is designed for small businesses and home-based offices. With an WiFi 6 multi-node mesh system, the base configuration of an Orbi Pro WiFi 6 Mini system comprises a router and a satellite.

Phishers using Zix to “legitimize” emails in the eyes of Office 365 users
2021-05-12 10:30

Abnormal Security removed the blog post after receiving legal notice from Zix. Through their PR agency, Zix contacted us to say that the blog post was removed because they believe it contained multiple false and misleading statements, and they asked us to remove our article or issue a retraction.

Microsoft: Office 365 is blocking emails from Google, LinkedIn domains
2021-05-10 17:48

Microsoft is working on addressing an Office 365 issue that has resulted in legitimate emails sent from multiple domains getting tagged as malicious and quarantined. "Users having multiple issues related to email flow, links within email messages and the Microsoft Defender portal," Microsoft says in the Microsoft 365 admin center.

Security teams plan a new pandemic quarantine for BYOD devices headed back to the office
2021-05-05 20:59

Security professionals are bracing for the next phase of the remote work reality: personal devices coming back into the office and bringing along all the associated security risks. Security teams are worried about the security status of laptops, smartphones and tablets employees will bring to the office after using them on a home network for months without proper supervision or control.

Malicious Office 365 Apps Are the Ultimate Insiders
2021-05-05 12:27

Phishers targeting Microsoft Office 365 users increasingly are turning to specialized links that take users to their organization's own email login page. The apps will persist in a user's Office 365 account indefinitely until removed, and will survive even after an account password reset.

Qohash expands U.S. office presence and appoints three senior account executives
2021-05-01 22:15

Qohash expanded its U.S. presence with a New Jersey office and three senior account executives who will focus on sales in the U.S. market. Qohash Solutions, Inc. was launched to accelerate access to the company's cloud-based Qostodian Prime data risk management platform nationally and in the New York metro area, where many major financial institutions are based.

Office 365 security baseline adds macro signing, JScript protection
2021-05-01 14:00

Microsoft has updated the security baseline for Microsoft 365 Apps for enterprise to include protection from JScript code execution attacks and unsigned macros. Security baselines enable security admins to use Microsoft-recommended Group Policy Object baselines to reduce the attack surface of Microsoft 365 Apps and boost the security posture of enterprise endpoints they run on.