Forum Discussion
ATP not scanning Subject Line for Hyperlinks
Well we expect Safe Links to rewrite URLs so they can be checked at the time of click. So that should be happening whether the URL is known (by us) to be safe or not.
I am told by a member of the product group that they are aware of this issue and are actively working on it.
- Fredrik JonssonOct 23, 2018Copper Contributor
To me it looks like safelink gets bypassed a lot even if the link is in the content of the mail.
- Paul CunninghamNov 15, 2018Steel Contributor
Some domains are automatically bypassed based on Microsoft's own intel, last I checked.
- DeletedNov 20, 2018
Paul Cunningham miss your articles on practical365. Nice to see you responding threads..
- Mattias BorgAug 06, 2018Brass Contributor
Is the clickable link scanned?
So when you reply to yourself and the link appears to be clickable, is it scanned then?
Have you tried with a proper malicious link?
- Paul BroadbentAug 06, 2018Copper Contributor
Hi Mattias,
it appears the clickable link in the subject line is not scanned or re-directed to *.safelinks.protection.outlook.com at any point.
I have been unable to use a "real" malicious link. Although I suppose linking directly to eicar would be pretty safe.
Paul