<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Microsoft Defender flags legitimate Google search links as malicious]]></title><description><![CDATA[<p dir="auto">Microsoft is currently investigating a defect in <strong>Defender for Office 365</strong> that is causing the security platform to incorrectly flag and block legitimate <strong>Google search links</strong> as malicious. The issue appears to affect users who click on organic search results, with Defender intercepting the navigation and presenting a warning page instead of allowing the request through.</p>
<p dir="auto">The problem does not seem to originate from the destination websites themselves, but rather from the way Google formats its redirect URLs. When a user clicks a search result, Google briefly routes the request through a tracking or forwarding prefix before sending the user to the final page. Defender for Office 365 is reportedly misreading this standard URL structure as a potential phishing or malware vector, leading to false positives.</p>
<p dir="auto">Microsoft has acknowledged the reports and stated that its team is actively investigating the root cause. While no workaround has been officially provided yet, administrators experiencing this issue have noted that temporarily disabling URL detonation or link safety checks in the security policy may restore normal functionality—though this is not recommended as a long-term solution due to the increased risk.</p>
<p dir="auto">Affected users are encouraged to monitor the Microsoft 365 admin center for service health notifications. The company has not yet specified a timeline for a permanent fix.</p>
<ul>
<li>Affected service: <strong>Defender for Office 365</strong> (link and URL protection features)</li>
<li>Trigger: Clicking legitimate Google search result links</li>
<li>Current status: Under active investigation by Microsoft</li>
<li>Temporary mitigation (not advised long-term): Disabling link safety checks in security policies</li>
</ul>
<p dir="auto">Source: <a href="https://www.bleepingcomputer.com/news/security/microsoft-defender-flags-legitimate-google-search-links-as-malicious" target="_blank" rel="noopener noreferrer nofollow ugc">Unknown</a></p>
<p dir="auto">Has your organization encountered this false-positive issue with Defender for Office 365, and are you applying any interim filtering rules while waiting for the official patch?</p>
]]></description><link>https://xploitlk.com/topic/189/microsoft-defender-flags-legitimate-google-search-links-as-malicious</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 12:36:37 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/189.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 02 Sep 2026 10:30:21 GMT</pubDate><ttl>60</ttl></channel></rss>