Outlook flaw compromises Exchange Native Protection

%3CLINGO-SUB%20id%3D%22lingo-sub-1107244%22%20slang%3D%22en-US%22%3EOutlook%20flaw%20compromises%20Exchange%20Native%20Protection%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1107244%22%20slang%3D%22en-US%22%3E%3CP%20class%3D%22mentions-texteditor__content%22%3EA%20flaw%20in%20the%20Outlook%20desktop%20implementation%20of%20the%20MAPI%20over%20HTTP%20protocol%20compromises%20the%20copy-on-write%20feature%20in%20Exchange%20Online%20Native%20Data%20Protection.%20The%20net%20result%20is%20that%20users%20whose%20mailboxes%20are%20on%20hold%20can%20remove%20attachments%20from%20messages%20without%20the%20removal%20being%20tracked%20and%20the%20original%20message%20(with%20its%20attachment)%20being%20captured.%20And%20when%20the%20attachment%20is%20gone%2C%20eDiscovery%20searches%20can't%20find%20it...%20It's%20a%20big%20issue%20for%20anyone%20working%20with%20Office%20365%26nbsp%3B%20in%20the%20area%20of%20data%20governance%20and%20compliance.%3C%2FP%3E%0A%3CP%20class%3D%22mentions-texteditor__content%22%3E%3CA%20href%3D%22https%3A%2F%2Fwww.petri.com%2Foutlook-flaw-compromises-exchange-online-native-data-protection%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fwww.petri.com%2Foutlook-flaw-compromises-exchange-online-native-data-protection%3C%2FA%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1107244%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EExchange%20Online%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Highlighted
MVP

A flaw in the Outlook desktop implementation of the MAPI over HTTP protocol compromises the copy-on-write feature in Exchange Online Native Data Protection. The net result is that users whose mailboxes are on hold can remove attachments from messages without the removal being tracked and the original message (with its attachment) being captured. And when the attachment is gone, eDiscovery searches can't find it... It's a big issue for anyone working with Office 365  in the area of data governance and compliance.

https://www.petri.com/outlook-flaw-compromises-exchange-online-native-data-protection

0 Replies