Security Detection Report in Teams Admin Center
A new Security Detection Report in the Teams admin center offers centralized visibility into messaging threats like impersonation, malicious URLs, and unsafe files. Available from late June 2026, it helps admins investigate, export data, and block malicious users, enhancing security operations and response workflows. Introduction A new Security Detection Report in the Teams admin center provides a unified view of messaging security detections across signals such as impersonation, malicious URLs, and weaponizable file types. This centralized reporting experience improves visibility into threats in Teams and helps admins investigate and respond to suspicious activity more efficiently. This message is associated with Microsoft 365 Roadmap ID 560702. When this will happen: General Availability (Worldwide): Rollout will begin in late June 2026 and is expected to complete by late June 2026. How this affects your organization: Who is affected: Admins who manage Microsoft Teams environments and security operations Security and helpdesk teams responsible for investigating messaging threats What will happen: What you can do to prepare: Review current Messaging safety settings to confirm malicious link and file scanning configurations. Familiarize security and helpdesk teams with the new report and export capabilities. Update investigation and response workflows to incorporate Teams detection signals. Use Teams admin center navigation path to locate the report: Analytics & reports > Protection reports > Security detections report Update internal documentation or runbooks if you document security investigation processes. Before rollout, we will update this post with new documentation. Compliance considerations: A new Security Detection Report will be available in the Teams admin center under Analytics & reports > Protection reports > Security detections report. Screenshot: Example of a Security Detection Report: View image in new tab The report provides centralized visibility into messaging security detections across Teams, including impersonation attempts, malicious links, and unsafe file types. Admins can review detection details such as: Sender Recipient context Detection type Available user actions Admins can export report data for further investigation, including additional metadata such as sender identifier and thread ID. The following messaging security protections are enabled by default: Impersonation detection does not require configuration. Malicious link scanning can be […]
The post Security Detection Report in Teams Admin Center appeared first on M365 Admin.
Published on:
Learn moreWe can help you with Security Detection Report in Teams Admin Center
If you want help implementing, troubleshooting, or improving this product, contact us and we’ll point you in the right direction.
Related posts
Dynamics 365 Contact Center – Manage overnight shifts as a single continuous schedule
We are announcing the ability to manage overnight shifts as a single continuous schedule in Dynamics 365 Contact Center. This feature will rea...
Manage who can upload advanced agents and plugins
Starting September 25, Microsoft 365 admins can control who uploads advanced Copilot agents and plugins, limiting access to specific users or ...
Microsoft 365 Copilot: Insights Copilot Analytics cowork adoption impact
Microsoft 365 Copilot now includes Cowork adoption and impact insights in the Consumption dashboard and Viva Insights Advanced Insights. Avail...
Writing Blocks in M365 Copilot
Microsoft 365 Copilot will introduce Writing blocks by mid-September 2026, enabling users to create and refine longer-form content like emails...
Outlook: Change the organizer of meetings
Microsoft is introducing a feature to change the organizer of eligible Outlook meetings, allowing transfer of meeting ownership within an orga...
Code Blocks in M365 Copilot
Microsoft 365 Copilot will support inline previews of code blocks, charts, and diagrams within conversations, eliminating the need for a separ...
Microsoft SharePoint: PowerShell support for brand fonts deletion
Microsoft SharePoint will introduce the Remove-SPOFontFile PowerShell cmdlet by mid-October 2026, allowing admins to delete brand fonts across...
[Outlook Mobile] Purview Data Loss Prevention support for Calendar Events
Outlook for iOS and Android will support Microsoft Purview Data Loss Prevention for calendar events, helping prevent sensitive data sharing in...
[Outlook Mac] Purview Data Loss Prevention support for Calendar Events
Outlook for Mac will support Microsoft Purview Data Loss Prevention for calendar events, detecting sensitive info in meeting details to preven...
[Outlook Mobile] Purview DLP Wait-on-Send Support
Outlook for iOS and Android will support Microsoft Purview DLP wait-on-send policies, allowing organizations to require and configure a wait t...