Anti-phishing policy exists and EnableSpoofIntelligence is true.
Why This Matters
Spoof intelligence is a critical anti-phishing feature that automatically detects and blocks forged sender addresses, a common tactic used in impersonation attacks. Without this enabled, your organization is more vulnerable to phishing emails that appear to come from trusted domains or contacts. Ensuring spoof intelligence is active in your anti-phishing policy reduces the risk of credential theft, malware delivery, and business email compromise.
What Aether365 Checks
Aether365 verifies that at least one anti-phishing policy exists in your Microsoft 365 organization and that the EnableSpoofIntelligence parameter is set to true. This check appears in the Aether365 dashboard under microsoft-365 checks.