{"id":16129,"date":"2026-03-20T17:44:21","date_gmt":"2026-03-20T04:44:21","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=16129"},"modified":"2026-03-20T17:44:21","modified_gmt":"2026-03-20T04:44:21","slug":"additional-m365-security-protection-rolled-out-for-our-kare-foundation-customers","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=16129","title":{"rendered":"Additional M365 Security Protection Rolled Out for our KARE Foundation Customers"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_row _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h2>Turning up your cyber-security<\/h2>\n<p>Kinetics is busy rolling out an additional security protection for <strong>Kinetics KARE Foundation customers only<\/strong>, designed to stop a highly active and sophisticated phishing campaign currently targeting Microsoft 365 environments worldwide.\u00a0<\/p>\n<p>(This change is included in KARE Foundation subscriptions and there is no additional cost).\u00a0<\/p>\n<p>These changes build out further on our <a href=\"https:\/\/new.kinetics.co.nz\/beyond-endpoint-protection-what-is-itdr\/\">recent inclusion of MDR and ITDR<\/a> in all KARE Foundation Cyber-Security subscription plans.<\/p>\n<p>This measure works quietly in the background and is focused on keeping customer accounts safe, with little to no impact on normal day\u2011to\u2011day work.<\/p>\n<h3>Why this change is being made<\/h3>\n<p>Over the past two weeks, security teams across the industry have observed a large\u2011scale phishing campaign affecting <strong>hundreds of Microsoft 365 tenants<\/strong>. This campaign uses advanced techniques, including:<\/p>\n<ul>\n<li><strong>Device code phishing<\/strong>, which can trick users into approving sign\u2011ins without realising it<\/li>\n<li><strong>Highly personalised, AI\u2011generated phishing messages<\/strong>, designed to look legitimate and evade email filtering<\/li>\n<li>Infrastructure hosted on commonly used cloud platforms, making the activity harder to spot<\/li>\n<\/ul>\n<p>While the Kinetics KARE security monitoring has successfully detected this activity, the scale and effectiveness of the campaign prompted an additional <strong>preventative<\/strong> step \u2014 stopping known attacker infrastructure from authenticating at all.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=&#8221;1_2,1_2&#8243; _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h2><span style=\"font-size: 16px; text-transform: uppercase;\">What Kinetics is doing<\/span><\/h2>\n<p>For <strong>KARE Foundation customers<\/strong>, Kinetics is deploying\u00a0 a protective Microsoft 365 sign\u2011in policy that:<\/p>\n<ul>\n<li>Blocks authentication attempts coming from <strong>confirmed attacker infrastructure<\/strong><\/li>\n<li>Applies across <strong>all Microsoft 365 services<\/strong> (Outlook, Teams, OneDrive, SharePoint, and more)<\/li>\n<li>Prevents access even if a username, password, or approval is mistakenly provided<\/li>\n<\/ul>\n<p>This policy targets <strong>known malicious networks only<\/strong>. It does not block countries, regions, or legitimate users.\u00a0<\/p>\n<p>&nbsp;<\/p>\n<h2><\/h2>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&quot;1_2&quot; _builder_version=&quot;4.27.6&quot; _module_preset=&quot;default&quot; global_colors_info=&quot;{}&quot; theme_builder_area=&quot;post_content&quot;][et_pb_image src=&quot;https:\/\/new.kinetics.co.nz\/wp-content\/uploads\/2026\/03\/365Security400.jpg&quot; title_text=&quot;365Security400&quot; _builder_version=&quot;4.27.6&quot; _module_preset=&quot;default&quot; border_radii=&quot;on|10px|10px|10px|10px&quot; border_width_all=&quot;1px&quot; box_shadow_style=&quot;preset1&quot; global_colors_info=&quot;{}&quot; theme_builder_area=&quot;post_content&quot;][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&quot;4.27.6&quot; _module_preset=&quot;default&quot; global_colors_info=&quot;{}&quot; theme_builder_area=&quot;post_content&quot;][et_pb_column type=&quot;4_4&quot; _builder_version=&quot;4.27.6&quot; _module_preset=&quot;default&quot; global_colors_info=&quot;{}&quot; theme_builder_area=&quot;post_content&quot;][et_pb_text _builder_version=&quot;4.27.6&quot; _module_preset=&quot;default&quot; global_colors_info=&quot;{}&quot; theme_builder_area=&quot;post_content&quot;]<\/p>\n<h2><\/h2>\n<h2>What this means for you as a user<\/h2>\n<h3>You\u2019re safer, even if a phishing message looks convincing<\/h3>\n<h2><span style=\"font-size: 14px; color: #403f41; font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-weight: 500;\">This additional layer of protection reduces the risk that:<\/span><\/h2>\n<ul>\n<li>A single click<\/li>\n<li>A moment of uncertainty<\/li>\n<li>Or a very convincing phishing email<\/li>\n<\/ul>\n<p>can turn into a full account compromise.<\/p>\n<p>Even if credentials were exposed, sign\u2011ins from attacker\u2011controlled infrastructure are automatically blocked.<\/p>\n<h3>Little to no change to how you work<\/h3>\n<p>For most users, <strong>nothing will feel different<\/strong>:<\/p>\n<ul>\n<li>You\u2019ll sign in the same way as before<\/li>\n<li>Your Microsoft 365 apps will work as normal<\/li>\n<li>There are no new prompts or steps added<\/li>\n<\/ul>\n<p>This protection runs silently in the background<\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.27.6&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>&nbsp;<\/p>\n<h3>If access is blocked<\/h3>\n<p>In rare cases, a user might see an access\u2011blocked message. This would only occur if a sign\u2011in attempt is coming from a network that has been positively identified as part of the active attack.<\/p>\n<p>This is the system doing exactly what it\u2019s designed to do \u2014 <strong>protect accounts before damage occurs<\/strong>.<\/p>\n<h3>What if you\u2019re travelling?<\/h3>\n<p>Normal travel is <strong>not affected<\/strong>.<\/p>\n<p>This protection:<\/p>\n<ul>\n<li>Is <strong>not based on location or country<\/strong><\/li>\n<li>Does <strong>not block airports, hotels, home internet, or mobile networks<\/strong><\/li>\n<li>Does <strong>not interfere with remote or hybrid work<\/strong><\/li>\n<\/ul>\n<p>Domestic and international travel should continue as usual.<\/p>\n<p>In uncommon edge cases \u2014 such as using low\u2011quality or risky VPN or proxy services \u2014 access may be blocked if that service overlaps with known malicious infrastructure.<\/p>\n<p>Who this applies to<\/p>\n<p>\u2705 <strong>Kinetics KARE Foundation customers only<\/strong><br \/>\u274c Not applied to other Kinetics service tiers at this time<\/p>\n<p>This scoped rollout allows Kinetics to provide enhanced protection where it is most appropriate, without unnecessary disruption.<\/p>\n<h2>In summary<\/h2>\n<ul>\n<li>This is a <strong>preventative security measure<\/strong><\/li>\n<li>It adds additional protection for users from modern, AI\u2011driven phishing attacks<\/li>\n<li>It has minimal impact on everyday work<\/li>\n<li>It quietly blocks attackers, not people<\/li>\n<\/ul>\n<p>If you have questions or encounter anything unusual while signing in, the Kinetics KARE team is ready to help.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Turning up your cyber-security Kinetics is busy rolling out an additional security protection for Kinetics KARE Foundation customers only, designed to stop a highly active and sophisticated phishing campaign currently targeting Microsoft 365 environments worldwide.\u00a0 (This change is included in KARE Foundation subscriptions and there is no additional cost).\u00a0 These changes build out further on [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":16130,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[4,5],"tags":[],"class_list":["post-16129","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-security"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/16129","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=16129"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/16129\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=16129"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=16129"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=16129"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}