-
Notifications
You must be signed in to change notification settings - Fork 221
Open
Labels
bugSomething isn't workingSomething isn't working
Description
Describe the bug
The "ORCA.110: Internal Sender notifications are disabled" test description does not match what gets checked.
Notifying internal senders about malware detected in email messages could have negative impact. An adversary with access to an already compromised mailbox may use this information to verify effectiveness of malware detection.
Disable notifying internal senders of malware detection.
It (appropriately) instructs you to not notify internal senders of malware detection. However, the policy setting being checked is "Notify an admin about undelivered messages from internal senders."
Would like verification from others who can confirm my observation or explain that I'm wrong. 🙃
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
bugSomething isn't workingSomething isn't working