Microsoft Teams to Enforce Messaging Safety Defaults Starting January 2026
Microsoft has announced an update to enhance the security features in Microsoft Teams for enterprise collaboration. This update involves the automatic activation of key messaging safety features, effective from Fri, Jan 12, 2026, for tenants using…
Microsoft has announced an update to enhance the security features in Microsoft Teams for enterprise collaboration. This update involves the automatic activation of key messaging safety features, effective from Fri, Jan 12, 2026, for tenants using standard configurations.
The update aims to adhere to "secure-by-default" principles, thereby minimizing potential security risks for organizations that may not have manually adjusted their security settings. As per administrative advisories MC1148540, MC1148539, and MC1147984, the modifications will be applied to the Messaging Safety section within the Teams Admin Center.
Automatic Activation of Security Features
The following protections will be automatically enabled for tenants with default messaging safety settings:
Weaponizable File Type Protection: Blocks the transmission of file types that are considered high-risk for malware execution. Malicious URL Protection: Scans shared links in real-time to identify and flag known phishing sites or malicious domains. Report Incorrect Security Detections: Allows end-users to report false positives, aiding Microsoft in refining its threat detection algorithms.
Microsoft has announced an update to enhance the security features in Microsoft Teams for enterprise collaboration.
These changes apply specifically to tenants with default configurations. Organizations that have previously customized their messaging safety settings will retain their established preferences.
End-users may notice immediate changes in their workflow, such as warning labels on messages containing suspicious URLs. Attempts to transfer high-risk file types will result in blocked messages. However, the reporting feature helps ensure that business operations are not disrupted by false alarms.
IT administrators are advised to review these changes promptly by navigating to Teams admin center > Messaging > Messaging settings > Messaging safety . Administrators wishing to opt out of the default settings must manually adjust and save their configurations before the deadline of Fri, Jan 12, 2026. If no action is taken, the new security protocols will be applied automatically.
Organizations are encouraged to update internal documentation regarding acceptable file types and URL warnings. Additionally, Microsoft recommends informing helpdesk staff about the imminent changes to differentiate between legitimate security blocks and potential system errors.
By standardizing these protective measures, Microsoft aims to reduce the risk of threat actors exploiting collaboration platforms for unauthorized access and malware dissemination.
Based on reporting by Cyber Security News.
