Forum Discussion

JeremyTBradshaw's avatar
JeremyTBradshaw
Iron Contributor
Sep 24, 2024

Bad actors impersonating Microsoft Billing using rogue on-prem. Exchange > M365 tenants

Everyone should be aware and watch out for these very believable spoofs coming from microsoft-noreply_at_microsoft.com. If you have Threat Explorer (Defender Portal > Email & Collaboration > Explore...

Resources