Office 365 provides anti-phishing and anti-spoofing protection through Defender for Office 365. You can create and configure policies to detect and block spoofed emails, protecting your users from phishing attempts.
Follow these steps to configure Anti-Spoofing (Anti-Phishing) policies:
- Sign in to the Microsoft 365 Defender portal at security.microsoft.com.
- Go to Email & Collaboration > Policies & Rules > Threat Policies.
- Under Policies, select Anti-phishing.
- Click + Create policy and choose Microsoft Defender for Office 365.
- Configure the following sections:
- Name & description: Give your policy a clear name.
- Users, groups, and domains: Select who the policy will apply to.
- Impersonation settings: Add users or domains you want to protect from spoofing.
- Actions: Choose what happens when a spoofing attempt is detected (e.g., move to Junk, quarantine).
- Review settings: Confirm and create the policy.
- Save and enable the policy.
To learn more about configuring Anti-Phishing policies in Microsoft Defender,
click here.