Jump to content

Prevent/Fix: Microsoft Forms Detected Potential Phishing.


Recommended Posts

Posted

So I'm trying to follow an online guide to Review and unblock forms or users detected and blocked for potential phishing

 

The guide

 

https://support.microsoft.com/en-us/office/review-and-unblock-forms-or-users-detected-and-blocked-for-potential-phishing-879a90d7-6ef9-4145-933a-fb53a430bced

 

suggests that I sign in to the Microsoft 365 admin center at admin.microsoft.com.

 

Go to the Message center and look for the notification, Prevent/Fix: Microsoft Forms Detected Potential Phishing.

 

My view looks very different from the one in the instructions.

 

 

Am I doing something wrong?

Posted

I'd say so if it's not showing that :p On the main admin page, do you have the messages showing in one of the cards? Just clicking on that should load up the message center (If not, Health -> Message Center on the menu)

 

You got a screenie of what you see? (Obviously you won't have that alert unless one has flagged though)

 

Steve

  • Thanks 1
Posted

Hmm odd, looks like you're on the old admin center still. Do you have new releases disabled for users or anything? https://admin.microsoft.com/#/Settings/OrganizationProfile/:/Settings/L1/ReleasePreferences

 

Those "inbox/archive" tabs changed back in 2019 or something it seems :p https://docs.microsoft.com/en-us/microsoft-365/admin/whats-new-in-preview?view=o365-worldwide#july-2019

 

Unless you have some kind of odd permissions/custom filter on?

 

Steve

Posted
It appears that I am on the latest "modern" view of the admin center and that the article I was following was on an older "classic" view :/

 

Maybe you got the new roll-out early, despite it looking like the older version again lol

 

We are making some changes to how we handle Microsoft Forms phishing activity alerts.

 

This message is associated with Microsoft 365 Roadmap ID 76911

 

When this will happen

 

Both of these updates will begin rollout in mid-January 2021 and complete by late January 2021.

 

How this will affect your organization

 

With this change we will be rolling out the following updates:

 

1) Microsoft Forms’ phishing activities alert (for blocked forms and users due to confirmed and suspicious phishing) will now be added to the default alert policies in Microsoft’s Security and Compliance Center (SCC). If there is any user restricted from sharing forms and collecting responses from Microsoft Forms because of confirmed phishing activities, or any form identified/detected as phishing form, IT admins will receive an alert in the SCC Alert center.

2) The Forms phishing activity notification sent out via Message Center will now be marked as a Privacy message. With this change, only the global admins and the admins with the Message Center Privacy reader role can view these messages from Message Center. If security admins want to view these messages, they need to get the Message Center Privacy reader role from the global admin.

 

What you need to do to prepare

 

The Global admin should assign the Security admin to the Message Center Privacy reader role if the Security admin needs to view the daily Forms phishing notifications.

 

That's sitting in the info box for updates currently, maybe that's the way you need to do it now?

 

Steve

  • Thanks 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...