Thibault CHÂTIRON

Cybersecurity

Data Loss Prevention – Adding matched attachment details in Activity Explorer for Data Loss Prevention rules in Exchange

Microsoft is adding new fields in Microsoft Exchange to help prevent data loss. With these updates, admins can see more details about the attachments that are present in the email that violated the Data Loss Prevention (DLP) rules, including name, size, and labels. There will be new fields for the attachments that are in emails when …

Microsoft Defender for Office 365: Block Sender in Quarantine notification will require signing in to security portal

Quarantine End User Allow and Block list management, sign in to the security portal will be required for the Block Sender action in Quarantine notifications.  When this will happen: Microsoft will begin rolling out early March 2024 and expect to complete by mid-March 2024. How this will affect your organization: When the user clicks on …

Suspension of Azure Application Administrator role for Management of add-ins across Outlook, Word, Excel, and PowerPoint

Admins can manage add-ins across Outlook, Word, Excel, and PowerPoint from the Integrated Apps blade in the Microsoft 365 Admin Center. This capability is currently available to Global Administrators, Global Readers, Exchange Administrators, and Azure Application Administrators. Going forward, Microsoft is suspending capability for Azure Application Administrators from management of add-ins across Outlook, Word, Excel, and …

End of the Azure Information Protection Add-in for Office

Microsoft is retiring the Azure Information Protection (AIP) Unified Labeling add-in for Office on April 11th, 2024. When this will happen: The AIP Add-in for Office will be permanently disabled in Office after May 1st, 2024. How this will affect your organization: To continue using sensitivity labels powered by Microsoft Purview Information Protection in Office …

Retirement of AdminAuditLog and MailboxAuditLog cmdlets

Microsoft would like to inform you about an upcoming change in the way you access and manage your Exchange Online audit logs. Starting April 30, 2024, Microsoft will be retiring the following four cmdlets in the Exchange Online V3 module: When this will happen: Microsoft will roll out this change late April 2024 and expect …

Prepare for device-bound passkeys in Microsoft Entra ID (changes to FIDO2 and Windows Hello for Business)

Update of Prepare for device-bound passkeys in Microsoft Entra ID (changes to FIDO2 and Windows Hello for Business) | Thibault Chatiron Beginning mid-February 2024, Microsoft Entra ID will support device-bound passkeys stored on computers and mobile devices as an authentication method in preview, in addition to the existing support for FIDO2 security keys. This enables your users …

Information Protection: Full File Evidence for all workloads in Activity Explorer

This new feature grants the user the capability to view the source link of the file associated with the activity flagged in Activity Explorer. When this will happen: Rollout will begin in late January 2024 and is expected to be complete by early February 2024.  How this will affect your organization: Users can view the …

Data Loss Prevention – View-only mode for Data Loss Prevention and Information Protection Policies and Labels

This capability allows the admin with view-only restricted permissions to view the Data Loss Prevention and Information Protection policy configuration details without editing the policies or label configurations. When this will happen: Microsoft will begin rolling out in late December 2023 and complete by early February 2024. How this will affect your organization: 1. Assign …

Ability to change retention period on labels set to start retention based on “When items were labeled”

Previously, admins could not change the retention period set on existing labels configured to start retention from when items were labeled. This feature will remove this restriction, and the resulting behavior will be consistent with other retention label types.   When this will happen: Rollout will begin in mid-January 2024 and is expected to be complete …

January 2024 security update is now available

The January 2024 security update is now available for Windows 11 and all supported versions of Windows 10. We recommend that you install these updates promptly. For more information about the contents of this update, see the release notes, which are easily accessible from the Windows 11 and Windows 10 update history pages. To learn more about the different types …

“Open Microsoft 365” button in Outlook Preview

Currently, there is there no support available for iOS users looking to edit PDF files on the previewer in Outlook mobile. Microsoft is rolling out a new “Open Microsoft 365” button that helps users open/edit PDF files received on Outlook through the Microsoft 365 for mobile app. When this will happen: Microsoft will begin rolling …

[Public Preview] Windows Autopatch Reliability Report

The Windows Autopatch Reliability report is a new feature that will be accessible in the Windows Autopatch Reports section of the Microsoft Intune admin center. This new report provides a calculated reliability score across update cycles based on the occurrences of stop code errors detected on managed devices. Scores are determined at both the service and tenant …

New Microsoft Defender Antivirus services on Windows Devices

Microsoft Defender Antivirus on Windows 10 and Windows 11 will be shipping with a new service: When this will happen: Microsoft will roll out to all rings (Current Channel (Preview), Current Channel (Staged) and Current Channel (Broad)) during the week of March 11th, 2024. How this will affect your organization: To enhance your endpoint security …

Changes to FIDO2 security key registration and sign-in experiences

During FIDO2 security key registration, Microsoft Entra ID users may see an operating system or browser-generated prompt for creating a passkey on another device, such as a phone or tablet. In some cases, a QR code is shown to facilitate this option. When this happens, the user needs to select “Use a different device” to …

Announcing GA of “Deliver the message to the hosted quarantine” in DLP EXO

Currently available in preview, Microsoft is rolling out a new action for Data Loss Prevention in Exchange Online called “Deliver the message to the hosted quarantine”.  When this will happen: Rollout is expected to be complete by late November 2023. How this will affect your organization: Previously while managing messages delivered to hosted quarantine, admins …

[PKI] Microsoft Secure Score – New Microsoft Defender for Identity recommendations

Microsoft is updating Microsoft Secure Score improvement actions to ensure a more accurate representation of security posture. The improvement actions listed below will be added to Microsoft Secure Score. Your score will be updated accordingly. When this will happen: This is expected to be complete by late January 2024. How this will affect your organization: …

Required Configuration for Phishing Simulation emails

Exchange online protection (EOP)/ Defender for Office 365 (MDO) customers who want to send phishing simulation emails, need to configure advance delivery policy for optimal behavior. This policy will ensure that emails that match your conditions are delivered unfiltered to the Inbox and that safe links time of click protection and post-delivery actions are disabled. …

Outlook web: Replacing “Activity-Based Authentication Timeout” with “Idle Session Timeout for Microsoft 365

The Activity-Based Authentication Timeout for Outlook on the web will be replaced by Idle Session Timeout for Microsoft 365. When this will happen: Microsoft expect to complete by mid-February 2024. How this affects your organization: At the end of 2023, we will be ending support for Activity-Based Authentication Timeout, at that point all organizations who …

Retiring “MDE Settings” and “New version” options from Threat Explorer

Microsoft will be retiring the “MDE Settings” and “New version” options from Threat Explorer as they work to clean up and streamline the user experience. When this will happen: Microsoft expect to complete by late December 2023. How this will affect your organization: Users and Administrators will no longer see the “MDE Settings” and “New …

Microsoft Purview | Data Lifecycle Management and Records Management – Microsoft Graph APIs for extensibility

As a part of the extensibility vision of Microsoft and first release to Microsoft Graph, Microsoft is introducing three new APIs for retention labels, events, and event types in the Microsoft Graph beta environment. These APIs will enable you to customize and extend on what we have built in the product so far. These APIs …