The Secret Office 365 feature allows users to be monitored



[ad_1]
<div innerhtml = "

As Heise reports, it has long been rumored that in Office 365 there is a secret interface which should allow administrators to control the activities of


Users
of the Outlook e-mail program, which is included in Office 365.

At the end of June, the Crowdstrike computer security company made a report like this.


The interface
can be used to track cybercriminals. Hackers often use the login information of employees who have been phished before logging into Outlook in Outlook. There, they collect information to then send false transfer orders (CEO Fraud) or send malware to other employees of the company

API Activities

Use of the l & # 39; previously undocumented Office 365 interface "Activities API " Administrators can see almost every action that users have taken in Outlook in the last six months. This includes connections, deleted or forwarded messages, read messages, searched items, messages they answered, open messages, and the origin of the message. It can also be filtered after a certain period of time and certain activities. The contents of the mails are not visible.

In front of Heise


Microsoft
has now confirmed the existence of the interface . Do not recommend using this undocumented feature. It was made to support service-to-service communication. When asked why Microsoft did not inform at least the administrators of its Office 365 professional clients of the API Heise did not get any reply. Incidentally, users do not see when an administrator has recovered their activities.

">

As reported by Heise, it has long been rumored that Office 365 has a secret interface It will be possible for administrators to do the activities of


Users
of the Outlook e-mail program, which is included in Office 365.

At the end of June, the Crowdstrike computer security company made a report like this.


The interface
can be used to track cybercriminals. Hackers often use the login information of employees who have been phished before logging into Outlook in Outlook. There, they collect information to then send false transfer orders (CEO Fraud) or send malware to other employees of the company

API Activities

Use of the l & # 39; previously undocumented Office 365 interface "Activities API " Administrators can see almost every action that users have taken in Outlook in the last six months. This includes connections, deleted or forwarded messages, read messages, searched items, messages they answered, open messages, and the origin of the message. It can also be filtered after a certain period of time and certain activities. The contents of the mails are not visible.

In front of Heise


Microsoft
has now confirmed the existence of the interface . Do not recommend using this undocumented feature. It was made to support service-to-service communication. When asked why Microsoft did not inform at least the administrators of its Office 365 professional clients of the API Heise did not get any reply. Incidentally, users do not see when an administrator has recovered their activities.

[ad_2]
Source link