Phishing email with button that have link similar to Microsoft Teams

Copper Contributor

Is there a way we can detect or remediate this using Defender XDR so that the user cannot click the urlin the button, what happened is there is an email that have malicious attachments, but it also have url link disguise as a button "View in Teams" and a user still able to click this before defender categories this as phishing while the malicious attachments is still getting scanned because of the dynamic delivery.

rhotrix_0-1707970172051.png

 

0 Replies