MDO: Safe Attachments policy: Deprecate policy action ‘Replace’ for malware detections in attachments (Phase 2)

In an effort to improve Safe Attachment policies, Microsoft is retiring the 'Replace' action from the policy and replacing it with the 'Block' action. As part of Phase 2 of this change, selecting the 'Replace' action will no longer be available via Microsoft 365 Defender portal and cmdlets. All policies configured with the 'Replace' action will be automatically changed to the 'Block' action once the change is rolled out, starting in mid-April 2023 until mid-May 2023 (worldwide deployment) and mid-June 2023 until late-June 2023 (government clouds deployment). This change is designed to ensure a safer attachment environment, as the 'Block' action is a more secure option for malware detections in attachments. No action is needed from users, and all policies with the 'Replace' action will be updated to the 'Block' action. To learn more about Safe Attachments in Microsoft Defender for Office 365, please follow the provided link.
Message ID: MC525759
The post MDO: Safe Attachments policy: Deprecate policy action 'Replace' for malware detections in attachments (Phase 2) appeared first on M365 Admin.
Published on:
Learn moreRelated posts
Microsoft Defender for Office 365: Enhanced multiple action experience from Threat explorer
Microsoft Defender for Office 365 has introduced enhancements to its Threat explorer feature, enabling SecOps personnel to take multiple actio...
Safe Attachments policy: Retire option ‘Apply the SafeAttachments detection response if scanning cannot complete’
In a bid to streamline its Safe Attachments policy, Microsoft recently announced the retirement of the ‘Apply the SafeAttachments detect...
Microsoft Defender for Office 365: Enabling malware filter bypass for SecOps Mailboxes
Microsoft is rolling out an update to enable security operations (SecOps) teams to analyze messages with malware verdicts for their own review...
Configuration Change – Microsoft Defender for Cloud Apps threat protection policies
Microsoft is making changes to the default threat protection policies for Microsoft Defender for Cloud Apps. These policies will now be disabl...
Microsoft Defender for Office 365: Teams Security
Good news for Microsoft Teams users! Microsoft Defender for Office 365 is set to provide enhanced security operations and protection for Teams...
Microsoft Defender for Office 365: Quarantine Notifications enabled for Preset Security Policies
Microsoft Defender for Office 365 is set to roll out an update to the recommended quarantine notification policy in the Standard and Strict pr...
Microsoft Defender for Office 365: Built-in Protection Time of Click URL Email Protection
Microsoft Defender for Office 365 customers will soon be able to benefit from enhanced security features as the final remaining aspect of the ...
Introducing Threat Explorer V3 by Microsoft Defender for Office 365
Microsoft Defender for Office 365 is now introducing the latest version of Threat Explorer- Version 3. This tool has been an integral part of ...
Microsoft Defender for Office 365: Tenant blocks via admin submission
Microsoft Defender for Office 365 users can now ensure higher security by blocking senders, email addresses, domains, URLs and email attachmen...