Securitybeat

Community service to promote awareness of emerging security threats and best practices.

CSS Flaw Eliminates Microsoft O365 First Contact Safety Tips

Posted by:

|

On:

|

Information Security magazine highlights research from Certitude on the First Contact Safety Tip within Microsoft 365. By exploiting a Cross-Site Scripting (CSS) flaw, the user is unaware of the sender being unverified. Microsoft acknowledged the issue but offered no immediate plans to fix it.