Office 365 Mail Rules to Use for Anti-Spoofing

Anti-Spoofing Rules for Office 365

Fraudulent emails are becoming a common cyber threat. Anti-spoofing mail rules set up in Office 365 can help. In these phishing schemes, scammers research internal company names and send emails that look like they are coming from the CEO or someone else in the company. Typically the scam emails request a wire transfer or other proprietary information. 

Office 365 Anti-Spoofing Protection

Office 365 mail rules can tag the email with a disclaimer to alert the recipient that it may be a scam. The rule can be set up so if an email is coming from outside the organization, but is from an internal domain, the disclaimer will be added to the top of the email. Here’s how to set up Office 365 Anti-Spoofing Mail Rules.  

Office 365 Anti-Spoofing Set Up

To set up the mail rule:

  1. Log into the Office 365 management portal. 
  2. Open Exchange Management. 
  3. Go to Mail Flow > Rules. 
  4. Create a new rule if the sender is outside the organization and if the sender’s domain is one of your internal domains. Set the condition to Prepend the disclaimer and write a disclaimer explaining why the email is flagged as a spoofed email. See example below. 

Here is the rule we set up:

Office 365 Anti-Spoofing Known External Services Exclusions

This Office 365 Anti-Spoofing Rule may add the disclaimer to emails from devices such as scanners and third-party services like Constant Contact. To set up your rule to not add the disclaimer to these: 

  1. Click the add exception button in the rule and specify the sender. 

This simple anti-spoofing rule adds a great amount of security to email in Office 365 by providing a warning. 

For more information on how you can use mail rules in Office 365 to tag and alert you to emails with spoofed senders, continue reading Is Your CEO a Fraud.

Here’s Microsoft’s Office 365 Anti-Spoofing Protection in EOP article. 

Posted in
Intrust IT Intrustimonials

Intrust Man

Intrust Man may be small, but he is mighty smart. You can trust this clever cartoon hero to provide news you can use.

Share this Blog

Enterprise Password Management Promo Wide

Is Your Name or Birthday a Part of Your Password?

If so, you’re a part of the 59 percent of people who don’t follow proper password hygiene. More than 70 percent of passwords are used for more than one system, meaning if cybercriminals crack one, they can access a lot more accounts.

Our free Enterprise Password Management Guide will give you the best password hygiene practices to help you secure your computer and your business.

Download the Guide

Explore the Latest Trends in IT

IntrustIT logo

Intrust IT Acquires Commercial IT Support Division of Entegrity Consulting Group

Effective January 1st, 2025, Intrust IT of Cincinnati, Ohio, proudly completed the acquisition of the commercial IT support division of...
World Backup Day - Intrust IT

World Backup Day: Protect Your Data Before It’s Too Late

Imagine waking up to find every file, photo, and document on your devices gone. There is no warning, no chance...
What's Included in Managed IT Services - Intrust IT

Your Guide: What’s Included in Managed IT Services?

Technology should empower your business, not hold it back. Yet, for many companies, managing IT systems feels like playing whack-a-mole...
Donald Trump Memecoin - Intrust IT

Donald Trump Memecoin: What you Need to Know From an IT Expert

Lately, I've been receiving many questions from people unfamiliar with cryptocurrency about Donald Trump's new memecoin, the Trump memecoin, $TRUMP....
MFA ByPass - Intrust IT

Understanding MFA Bypass Attacks

In the world of best cybersecurity practices, multi-factor authentication (MFA) is a crucial defense against cyber threats. However, as security measures evolve,...
How to Hire an IT Company - Intrust IT

How to Hire an IT Company: Top 10 Questions to Ask

Hiring a managed service provider (MSP) can feel like a daunting task. Your organization’s success and security depend on finding...