Why the Zero-Click Attack on Outlook Is a Game-Changer for Email Security


Microsoft confirmed a Zero-Click attack in Outlook (CVE-2023-23397) that would compromise the end user without them doing anything. Once the end user receives the email, the malicious code is delivered.

Why is this so bad for post-delivery API solutions? Because they can’t do anything about it. Milliseconds don’t matter—the vulnerability is triggered once Outlook processes the email. 

The Avanan solution allows us to have a comprehensive email security solution that integrates seamlessly with our Office 365 environment while "staying enough out of the way" as to not hinder productivity.

— Infrastructure and Operations Analyst in Manufacturing