Anyone else seeing external images auto-downloaded by PAB?
We've been seeing an issue with our phish alert button, and been in touch with KB4 about it, and their techs say no one else is reporting this. So I'm just here to ask if anyone else is seeing it, and if maybe someone has found there's a server or m365 configuration that solves our issue.
The problem is this: the phish alert button is downloading images when it forwards the spam email to KB4. If you look in the sent mail folder after using the button, the copy of the email there will have all images downloaded, they were included in the email forward.
To be clear, Outlook is set to not download external images by default. If forwarding an email manually, there's a confirmation popup about downloading images to include in the forward. The alert button does not cause that dialog to show up, and seems to be defaulting to "yes download the images". If I was to forward an email that blocked images, it would still have those images blocked in the sent folder, so definitely the button is altering the sent copy of the email, and it sure looks like it's pulling down every tracking pixel that was sent to me.
This occurs in BOTH the desktop Outlook and the online version at office.com, so it's not an "outlook app" behavior per-se. I have tried toggling the alert button's "Allow users to leave comments and disposition" set, since I know that generates a slightly different format fowarded email, in either case the image behavior was the same.
My gut feeling is this is some default Microsoft setting in the API, and the button is not properly working aorund it - if the API would even give that option to the button at all. If the KB4 engineers are saying it's working as designed, the design may have been undermined by a recent change in Outlook.
Could anyone else please check their sent mail folder for the copies sent by the alert button, and see if you have unblocked external images there? Thanks
Войдите в службу, чтобы оставить комментарий.