Phishers have found a way of moving the malicious URLs in their emails past Office 36’s protections. The security company Avanan says they’ve observed criminals using a <base> tag in the HTML header used with the URL.

-   ptq - [Heads-up] New Attack Blindsides Microsoft Office 365 Anti-Phishing Filter And Blacklists

