url as fishing

Admin Misael ABREU 0 Reputation points
2024-11-14T11:13:42.63+00:00

Hello,

When an external user sends me a mail with a url (xxx) the mail goes to quarentaines because the defender detects a url as fisshing. How can I authorize the url in my tenant?

Microsoft Exchange Online Management
Microsoft Exchange Online Management
Microsoft Exchange Online: A Microsoft email and calendaring hosted service.Management: The act or process of organizing, handling, directing or controlling something.
4,624 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Xintao Qiao-MSFT 4,700 Reputation points Microsoft Vendor
    2024-11-15T03:17:08.0666667+00:00

    Hi, @Admin Misael ABREU

    To authorise URLs in your tenant and prevent them from being flagged as phishing by Microsoft Defender, you can try the following two methods.

    1.Submit the URL that is flagged as phishing in the Microsoft Defender portal. Microsoft Defender will analyse the URL and provide results. If the URL is deemed safe, it will be added to the allowlist. As shown in Fig.

    For more information, see Manage submissions - Microsoft Defender for Office 365 | Microsoft Learn

    Manage allows and blocks in the Tenant Allow/Block List - Microsoft Defender for Office 365 | Microsoft Learn

    User's image

    2.Use Safe Links.

    In Microsoft Defender, navigate to Policies&rules->Threat policies->Safe Links, click "Create" and add the URL in "Do not rewrite the following URLs in email". As shown in Fig.

    For more information, see Complete Safe Links overview for Microsoft Defender for Office 365 - Microsoft Defender for Office 365 | Microsoft Learn

    User's image


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.