Share via

Alert for Attack Pattern

Hasan Bozkurt 25 Reputation points
2024-03-06T22:52:36.6733333+00:00

Hello guys,

I have searched a solution which is about a email attack.

My scenario is very simple.

Setting an alert for an email attack that is in the particular time period (for ex last 24 hour) an email sender sends sequentially to different email address of a domain.

Consider that one email address ******@gmail.com sends different 30 email address of a domain in one day.

We want to detect this type of behaviour easliy but MS support says no way to do this.

Exchange | Exchange Server | Other
Exchange | Exchange Server | Other

A robust email, calendaring, and collaboration platform developed by Microsoft, designed for enterprise-level communication and data management.Miscellaneous topics that do not fit into specific categories.


1 answer

Sort by: Most helpful
  1. JimmyYang-MSFT 58,781 Reputation points Moderator
    2024-03-07T06:53:10.9666667+00:00

    @Hasan Bozkurt

    According to your description, do you mean you want to set an alert to this email attack for your organization?

    Based on my knowledge, Microsoft is not providing this option to help you detect this email attack.

    However, If you always receive this spam email from this specific sender, I would suggest you create an mailflow rule that would automatically delete emails from recipients that contains his email address or specific subject on their email address. To do that, you could refer to this article’s step.

    如何使用 Office 365 中的邮件流规则阻止传出电子邮件 (codetwo.com)


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


    Was this answer helpful?


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.