{"id":9384,"date":"2025-12-21T10:03:51","date_gmt":"2025-12-21T10:03:51","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2025\/12\/21\/microsoft-rolls-out-baseline-security-mode-for-office-sharepoint-exchange-teams-and-entra\/"},"modified":"2025-12-21T10:03:51","modified_gmt":"2025-12-21T10:03:51","slug":"microsoft-rolls-out-baseline-security-mode-for-office-sharepoint-exchange-teams-and-entra","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2025\/12\/21\/microsoft-rolls-out-baseline-security-mode-for-office-sharepoint-exchange-teams-and-entra\/","title":{"rendered":"Microsoft Rolls Out Baseline Security Mode for Office, SharePoint, Exchange, Teams, and Entra"},"content":{"rendered":"<p>    Microsoft Rolls Out Baseline Security Mode for Office, SharePoint, Exchange, Teams, and Entra<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>Microsoft has begun deploying Baseline Security Mode across <a href=\"https:\/\/cybersecuritynews.com\/hackers-abuse-microsoft-365s-direct-send-feature\/\" target=\"_blank\" rel=\"noreferrer noopener\">Microsoft 365 tenants<\/a>, a new dashboard in the M365 Admin Center that centralizes recommended security configurations for Office, SharePoint, Exchange, Teams, and Entra.<\/p>\n<p>Announced at Ignite 2025, this opt-in feature helps administrators quickly assess vulnerabilities, run impact reports, and apply risk-based hardening without immediate user disruptions.<\/p>\n<p>As of December 2025, it\u2019s appearing in select tenants under Org Settings &gt; Security &amp; Privacy, with full rollout targeted for late January 2026 worldwide.\u200b<\/p>\n<p>Baseline Security Mode enforces 18 to 20 policies across three core areas, drawing from Microsoft\u2019s threat intelligence and two decades of response center data.<\/p>\n<p><a href=\"https:\/\/cybersecuritynews.com\/authentication\/\" target=\"_blank\" rel=\"noreferrer noopener\">Authentication<\/a> policies 12 in total block legacy protocols like basic auth, Exchange Web Services (EWS), and IDCRL, while mandating phishing-resistant MFA for admins using FIDO2 or passkeys.<\/p>\n<p>File protections limit risky behaviors, such as opening documents via insecure HTTP\/FTP protocols, ActiveX, DDE, or legacy formats outside Protected View, and disable vulnerable tools like Microsoft Publisher ahead of its 2026 retirement.\u200b<\/p>\n<p>Public preview and general availability started mid-November 2025, with phased deployment completing by March 2026 for GCC, DoD, and GCCH clouds. <\/p>\n<p>Admins with Security or Global roles can enable it directly: select \u201cAutomatically apply default policies\u201d for seven low-impact controls or \u201cGenerate report\u201d for simulation on the rest, reviewing audit-based impact data within 24 hours. No tenant disruptions occur until changes are approved, and progress tracking shows \u201cAt risk\u201d or \u201cMeets standards\u201d statuses.\u200b<\/p>\n<p>This secure-by-default model addresses common misconfigurations, closing gaps exploited in credential stuffing, <a href=\"https:\/\/cybersecuritynews.com\/phishing-attack\/\" target=\"_blank\" rel=\"noreferrer noopener\">phishing<\/a>, and supply chain attacks.<\/p>\n<p>By simplifying enforcement across services, it prepares organizations for AI-driven threats under the Secure Future Initiative, with future expansions to Purview, Intune, and Azure planned. Tenants seeing it now, like the users, gain an edge in proactive defense amid rising ransomware and APT campaigns.\u200b<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 94%,rgb(169,184,195) 100%)\"><strong>Follow us on <a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google News<\/a>, <a href=\"https:\/\/www.linkedin.com\/company\/cybersecurity-news\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>, and <a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">X<\/a> for daily cybersecurity updates. <a href=\"https:\/\/cybersecuritynews.com\/contact-us\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Contact us<\/a> to feature your stories.<\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/microsoft-baseline-security-mode\/\">Microsoft Rolls Out Baseline Security Mode for Office, SharePoint, Exchange, Teams, and Entra<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Guru Baran<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/microsoft-baseline-security-mode\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft Rolls Out Baseline Security Mode for Office, SharePoint, Exchange, Teams, and Entra Microsoft has begun deploying Baseline Security Mode across Microsoft 365 tenants, a new dashboard in the M365 Admin Center that centralizes recommended security configurations for Office, SharePoint, Exchange, Teams, and Entra. Announced at Ignite 2025, this opt-in feature helps administrators quickly assess [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63],"tags":[130],"class_list":["post-9384","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/9384"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=9384"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/9384\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=9384"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=9384"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=9384"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}