SHD / MC Checker

MC1446794 | Microsoft Teams: Report security concerns in Teams meetings



MC1446794 | Microsoft Teams: Report security concerns in Teams meetings

Classification planForChange
Last Updated 08/05/2026 17:04:00
Start Time 08/03/2026 22:17:59
End Time 12/15/2026 08:00:00
Message Content

[What and why]

Microsoft Teams is introducing a new Report a meeting capability that allows meeting participants to report suspicious, malicious, or potentially fraudulent activity directly from Teams meetings.

This feature helps organizations identify and investigate threats such as phishing, impersonation, scams, and other suspicious behavior. Reported meeting information can help security teams assess potential threats and take appropriate action.

[Rollout schedule]

  • Targeted Release: Beginning in early August 2026
  • General Availability (Worldwide): Beginning in early October 2026

[Impact on your organization]

Who is affected

  • Users who participate in Microsoft Teams meetings on Windows, Mac, and web

Platforms and services

  • Microsoft Teams
  • Microsoft Defender portal
  • Teams admin center

What will happen

  • A new Report a meeting option will be available from:
    • The More actions (…) menu during an active meeting: 

    • The meeting chat header for scheduled and ad hoc meetings: 

  • Users can report suspected phishing attempts, impersonation, social engineering activity, scams, or other security concerns directly from Teams.
  • Relevant meeting metadata and limited contextual information will be collected to support investigation and remediation activities.
  • Information associated with reported meetings will be available for investigation by administrators.
  • Organizations with Microsoft Defender for Office 365 Plan 1, Plan 2, or Microsoft Defender XDR can review detailed reported meeting submissions in the Microsoft Defender portal.
  • Information about user-submitted reports will also be available in the Teams admin center under Protection reports > User-reported security submissions.
  • Administrators can investigate reported meetings and take actions according to their organization’s security processes and policies.
  • The Report a meeting capability is enabled by default.

[Action required and recommendations]

Review your organization’s security investigation and response processes before rollout.

Recommended actions:

  • Review Microsoft Defender user reporting settings and ensure your reporting workflows align with organizational requirements.
  • If your organization uses Microsoft Defender for Office 365 or Microsoft Defender XDR, verify that Teams meeting reporting is configured appropriately so detailed reported meeting submissions are available to security investigators in the Microsoft Defender portal.
  • Inform users about the new Report a meeting capability and when it should be used.
  • Update internal security awareness materials and incident response procedures, as needed.
  • Verify that security administrators responsible for reviewing reports have appropriate access to the Microsoft Defender portal or Teams admin center.

[Compliance considerations]

Question Answer
Does this change store new customer data? Yes. When users submit a meeting security report, relevant meeting metadata and limited contextual information are collected and stored to support investigation and remediation activities.
Does this change alter how existing customer data is processed, stored, or accessed? Yes. Reported meeting information is processed and made available through Microsoft Defender and Teams admin experiences to support security investigations.
Does this change provide a new way for users, tenants, or subscriptions to communicate? Yes. Users can submit security reports directly from Teams meetings and meeting chats, creating a new reporting channel between users and organizational security administrators.
Does this change alter how admins monitor, report on, or demonstrate compliance activities? Yes. Administrators can review and investigate user-submitted meeting security reports in the Microsoft Defender portal and Teams admin center, providing additional visibility into security-related events.
Does this change include an admin control? Yes. Administrators can configure reporting and investigation settings in the Microsoft Defender portal to enable access to detailed meeting security reports.
Does this change allow users to enable or disable the feature themselves? Yes. Users can choose whether to submit a security report for a meeting by using the new Report a meeting option in Teams.
Machine Translation

[何となぜ]

Microsoft Teamsは、参加者がTeams会議から疑わしい、悪意のある、または潜在的な詐欺的な活動を直接報告できる新しい「Report a meeting」機能を導入します。

この機能は、フィッシング、なりすまし、詐欺、その他の不審な行動などの脅威を特定し調査するのに役立ちます。報告された会議情報は、セキュリティチームが潜在的な脅威を評価し、適切な対応を取るのに役立ちます。

[展開スケジュール]

  • リリース予定:2026年8月初 旬から開始
  • 一般公開(世界):2026年10月初 旬から開始

[組織への影響]

影響を受ける人物

  • Windows、Mac、ウェブでMicrosoft Teams会議に参加するユーザー

ホームとサービス

  • Microsoft Teams
  • Microsoft Defender ポータル
  • Teams管理センター

何が起こるのか

  • 新しい報告会議オプションは以下の場所から利用可能になります:
    • アクティブ会議中の「More actions (…)」メニュー: 

    • 予定された会議および臨時会議のチャットヘッダー: 

  • ユーザーはTeamsから、疑わしいフィッシング未遂、なりすまし、ソーシャルエンジニアリング活動、詐欺、その他のセキュリティ上の懸念を直接報告できます。
  • 関連する会議メタデータおよび限定的な文脈情報が収集され、調査および是正活動を支援します。
  • 報告された会議に関連する情報は管理者が調査のために利用可能です。
  • Microsoft Defender for Office 365 Plan 1、Plan 2、またはMicrosoft Defender XDRを導入している組織は、Microsoft Defenderポータルで詳細な報告された会議提出を確認できます。
  • ユーザー提出の報告に関する情報も、Teams管理センターの保護報告>ユーザー報告のセキュリティ提出の項目で確認できます。
  • 管理者は報告された会議を調査し、組織のセキュリティプロセスやポリシーに従って対応を取ることができます。
  • 「会議を報告」機能は デフォルトで有効になっています

[行動が必要と提言]

導入前に組織のセキュリティ調査および対応プロセスを確認しましょう。

推奨される行動:

  • Microsoft Defenderのユーザーレポート設定を見直し、レポートワークフローが組織の要件に合致しているか確認してください。
  • 御社がMicrosoft Defender for Office 365またはMicrosoft Defender XDRを使用している場合は、Teamsの会議報告が適切に設定されているかを確認し、詳細な報告会議の提出がMicrosoft Defenderポータルでセキュリティ調査官に利用可能になっているか確認してください。
  • 新しい「会議報告」機能と使用時期についてユーザーに知らせてください。
  • 必要に応じて内部のセキュリティ意識向上資料やインシデント対応手順を更新します。
  • レポートのレビューを担当するセキュリティ管理者がMicrosoft DefenderポータルやTeams管理センターに適切なアクセス権を持っているか確認してください。

[コンプライアンスの考慮事項]

質問 回答
これにより新しい顧客データの保存が変わりますか? はい。ユーザーが会議セキュリティレポートを提出すると、関連する会議メタデータや限定的な文脈情報が収集・保存され、調査や是正活動を支援します。
この変更は既存の顧客データの処理、保存、アクセス方法を変えますか? はい。報告された会議情報はMicrosoft DefenderおよびTeamsの管理者体験を通じて処理され、セキュリティ調査を支援するために提供されます。
この変更はユーザー、テナント、サブスクリプションが新しいコミュニケーション手段を提供するのでしょうか? はい。ユーザーはTeamsの会議や会議チャットから直接セキュリティレポートを送信でき、ユーザーと組織のセキュリティ管理者の間で新たな報告チャネルを作成できます。
この変更は管理者がコンプライアンス活動を監視、報告、または示す方法に変化をもたらしますか? はい。管理者はMicrosoft DefenderポータルやTeams管理センターでユーザー提出の会議セキュリティレポートを確認・調査でき、セキュリティ関連イベントのさらなる可視性を提供します。
この変更には管理者の管理も含まれますか? はい。管理者はMicrosoft Defenderポータルで報告および調査設定を設定し、詳細な会議セキュリティレポートへのアクセスを可能にします。
この変更により、ユーザーは自分でその機能を有効または無効にできるのでしょうか? はい。ユーザーはTeamsの新しい「会議を報告する」オプションを使って、会議のセキュリティレポートを提出するかどうかを選択できます。