Forum Discussion
EmiliePhishing
Mar 03, 2025Copper Contributor
Attack Simulation - Copy to SOC Mailbox
Hello Community! Currently we are using Knowbe4 to simulate phishing campaigns. We are evaluating the Microsoft E5 Attack simulation. One problem that I cannot figure out with the MSFT version is a...
Joe Stocker
Mar 16, 2025Bronze Contributor
You could insert a special character in the attack simulation into the body of the email so that your custom rule could then fire. https://learn.microsoft.com/en-us/defender-office-365/attack-simulation-training-payloads#modify-payloads
EmiliePhishing
Mar 17, 2025Copper Contributor
Hi Joe,
I think that's what I'm going to have to end up doing, I was trying to avoid editing the hundreds of payloads :)
Thanks for your reply,
Em