BaseStriker attack type
As shown in the above two pictures, when using a card to separate the infected link, Safe Links cannot identify and replace the link, and the user is still taken to the infected page when clicked.
Researchers have tried using baseStriker and said 'anyone who uses Office 365 with any installation settings is likely to be affected', whether web, mobile or installed on the destkop.
Proofpoint is also likely to be affected. Gmail users or using Office 365 with Mimecast are not.
See more: