Exchange Online Content Filtering Bypass: Defeating Microsoft’s URL Sandboxer

Tl;dr SOPHTIX Security Team found a bypass for Microsoft’s phishing and malware content filtering for inbound email in Exchange Online. The bypass allows threat actors to include malicious links in phishing email messages sent to mailboxes hosted in Exchange Online, leaving organizations utilizing Microsoft 365 Business and Enterprise solutions prone to attack. Through the use […]