OneDrive Policy Now Offers ‘Suspected Malware’ Workflow
By
The Office365 Onedrive ‘Threat Protection’ policy now includes a new workflow: ‘Suspected Malware ‘.
The new workflow allows deciding how to behave when a file is scanned and the malware engine generates a detection with lower confidence (suspected malware). The options are:
- Quarantine. User is alerted and allowed to restore
- Quarantine. User is alerted, allowed to request a restore (admin must approve)
- Quarantine. User is not alerted (admin can restore)
- Do nothing

You may also like
2026 Cloud Security Report: Why Traditional Network, Cloud, and Security Architecture Are Lagging Behind the AI Transformation
As AI rapidly reshapes industries, the role of the cloud ...
Protect GenAI Chatbots with Check Point WAF
Generative AI chatbots are quickly becoming the new front door ...
Before the First Whistle: How Cyber Criminals Are Targeting World Cup 2026
Update on FIFA Scams: as of 5/28/26 Recent findings from ...
Q1 2026 Ransomware Report: Fewer Groups, Higher Impact
Ransomware activity remained elevated in Q1 2026, continuing the trend established over ...



