Microsoft just introduced cloud-managed remote mailboxes for directory-synced users. In plain English: you can manage Exchange attributes for synced mailboxes directly in Exchange Online without keeping an on-prem Exchange server for recipient admin. This post explains what that means for your business, the most valuable use cases, when not to enable it, and a 7-step pilot you can run this week. If “the last Exchange server” has been blocking your roadmap, this is the feature that finally moves you past it.
EWS in Microsoft 365: Why You Must Act Now As Microsoft 365 continues to evolve, one of the most impactful changes underway is the retirement of Exchange Web Services (EWS) in Exchange Online. While EWS has served as a core integration protocol for over a decade, Microsoft has made it clear: EWS is on the …
Attackers rarely miss an opportunity to twist a convenient feature into a phishing tool. Exchange Online’s Direct Send is the latest example: security researchers have documented campaigns that drop fake “internal” messages straight into corporate inboxes—no credentials required. Headlines warn that these messages “bypass SPF, DKIM and DMARC,” leaving IT teams wondering whether the standard …
Starting July 1, 2025, Microsoft will invalidate all legacy external sharing links in SharePoint and OneDrive that were created before your organization enabled Microsoft Entra B2B integration. That means anyone who accessed your content using an old OTP (one-time passcode) link is going to see an error instead. This isn’t just a security patch. It’s …
Licensing Microsoft Entra administrator accounts for email is a common practice, but it introduces avoidable security risks. Privileged accounts should remain isolated from unnecessary communication channels to minimize vulnerabilities. This guide shows how to set up email notifications for admin accounts without assigning them a mailbox license. We’ll also include visual steps for enabling plus …
Introduction to SMTP DANE and DNSSEC Securing email communication is critical in the modern digital landscape. SMTP DANE (DNS-based Authentication of Named Entities) and DNSSEC (Domain Name System Security Extensions) are two technologies that strengthen email security by protecting against DNS-based attacks and ensuring encrypted connections between mail servers. What is DNSSEC? DNSSEC enhances the …
What is DMARC DMARC, which stands for Domain-based Message Authentication, Reporting, and Conformance, is a crucial email authentication and anti-phishing technology designed to enhance the security of email communication. It helps organizations combat email fraud, phishing attacks, and unauthorized use of their domain names by allowing domain owners to specify policies for how their email …
Maybe you have been used to labels in documents and emails – now its also possible to label Teams and thereby protect the content inside the full team. In group level protection you can use the following settings for the labels Background Some background on sensitivity labels in general. Sensitivity labels are used to classify …
If you already have enabled labelling for Groups and Team sites in Azure, skip to part 2 of this series to see how to use them in Teams. Information protection in Microsoft Teams is important because it helps ensure the confidentiality, integrity, and availability of sensitive information that is communicated and shared within the platform. …






