Teams Allows Guests by Default – Hackers Cheer

Categories:   News, Syndicated Posts
Article By:  
Tags:  

Because MSFT Admin notices are not posted in a public facing site, I am attaching a PDF of the notice below. Cyber threats and indirect hacking attempts have blossomed in the pandemic remote working age. I brought this change up to cyber security guru John Wilson (HaystackID) on a webinar prep call today. He commented that this could be the equivalent of ‘rolling out the red carpet to hackers’. Many corporate sales/marketing/PR/shareholder relations teams are using Teams externally. All it takes is guest access and weak default Teams permissions to invoke/transmit malicious code to jump to a critical internal target.

MC234252_TeamsGuests

Written by Greg Buckles

Independent consultant focused on eDiscovery and IG solutions.

All author posts   |