KnowBe4 Threat Lab finds Direct Send attacks timed around the working day

KnowBe4 Threat Lab has published new research uncovering 29,785 confirmed phishing emails abusing Microsoft 365's Direct Send functionality across July and August 2026. Direct Send is a legitimate Microsoft 365 feature designed to allow devices such as printers and scanners, as well as legacy applications, to send emails without a dedicated account.

KnowBe4 Threat Lab finds Direct Send attacks timed around the working day

Share this story

Send the public story page.

Useful takeaways from this story.

KnowBe4 Threat Lab has published new research uncovering 29,785 confirmed phishing emails abusing Microsoft 365's Direct Send functionality across July and August 2026.

Direct Send is a legitimate Microsoft 365 feature designed to allow devices such as printers and scanners, as well as legacy applications, to send emails without a dedicated account.

Building the complete brief

The page is ready to read now. The fuller skim-friendly version will appear here automatically.

The useful part

KnowBe4 Threat Lab has published new research uncovering 29,785 confirmed phishing emails abusing Microsoft 365's Direct Send functionality across July and August 2026. Direct Send is a legitimate Microsoft 365 feature designed to allow devices such as printers and scanners, as well as legacy applications, to send emails without a dedicated account.

Keep reading in the app

Open the app view to save this story, compare related coverage, and continue from the same source.

Open in app