[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fCLOI8WMn9rUmHM8fwo1yap3FUTX-hXDTW9uvvDVuNWM":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":20,"created_at":21,"published_at":22,"article":23,"tags":27,"podcasts":40},"52e05843-1363-4bca-a105-1acf4333a61d","microsoft-teams-adds-admin-controls-to-block-external-bots-from-meetings","ffd119aa-80bd-4909-a3b5-121a808af1c6","Microsoft Teams Adds Admin Controls to Block External Bots from Meetings","Unauthorized external bots joining Microsoft Teams meetings represent a significant access control risk, as they can silently monitor sensitive discussions, exfiltrate information, or serve as an entry point into enterprise networks. The absence of robust bot-filtering controls meant organizations had limited visibility and authority over non-human participants in their meetings. This new policy addresses a gap in meeting security hygiene that threat actors have exploited by disguising malicious bots as legitimate participants. The broader lesson is that collaboration platforms must be treated as potential attack surfaces requiring the same rigorous access governance as any other enterprise system.","**Immediate actions:**\n- Enable the new Microsoft Teams external bot-blocking policy as soon as it becomes available in your tenant.\n- Audit current Teams meeting settings to identify any existing unauthorized or unrecognized bot integrations.\n\n**Long-term improvements:**\n- Establish a formal approval and allowlist process for any third-party bots or integrations permitted to join Teams meetings.\n- Incorporate collaboration platform security configurations into your regular configuration management review cycles.\n- Define and enforce a least-privilege policy for all non-human participants (bots, apps, connectors) across collaboration tools.\n\n**Detection measures:**\n- Enable Teams admin logging and monitoring to generate alerts when unrecognized or external bots attempt to join meetings.\n- Regularly review meeting participant logs for anomalous or unexpected bot activity, especially in meetings involving sensitive topics.",[12,13,14,15,16,17,18,19],"CIS Control 4: Secure Configuration of Enterprise Assets and Software","CIS Control 6: Access Control Management","NIST AC-3: Access Enforcement","NIST AC-17: Remote Access","NIST CM-7: Least Functionality","NIST SI-3: Malicious Code Protection","ISO 27001 A.9.4: System and Application Access Control","GDPR Article 32: Security of Processing","published","2026-08-24T16:21:03.148596+00:00","2026-08-24T16:21:02.863+00:00",{"id":7,"url":24,"slug":25,"title":26},"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fmicrosoft-teams-now-lets-admins-block-external-bots-from-meetings\u002F","microsoft-teams-now-lets-admins-block-external-bots-from-meetings-5a4c9d","Microsoft Teams now lets admins block external bots from meetings",[28,34],{"id":29,"name":30,"slug":31,"description":32,"color":33},"1ec88fde-2d0f-4ed8-932a-33f5ccc0fdc7","Access Control","access-control","Excessive privileges, missing MFA, weak auth","#f97316",{"id":35,"name":36,"slug":37,"description":38,"color":39},"859cf0ad-a7e9-42bb-a75d-bac6511fa5d5","Configuration Management","configuration-management","Misconfigs, default credentials, exposed services","#eab308",[]]