Aug 01 2022 10:33 AM
A low-severity alert has been triggered
⚠ Mailbox permissions granted
Severity: ● Low
Time: 8/1/2022 7:45:00 AM (UTC)
Activity: AddMailboxPermission
User: NT AUTHORITY\SYSTEM (Microsoft.Exchange.Servicehost)
Details: AddMailboxPermission. This alert is triggered whenever someone gets access to read your user's email.
This alert is not particularly useful. Who or what service triggered this alert? How do I find out what mailbox it was triggered for, since I see no corresponding entries in the audit logs? I've tried searching on this alert, but every other post I've seen had High Severity Alert for this message. Why is mine low?
Aug 01 2022 11:50 PM
SolutionAug 01 2022 11:50 PM
Solution