<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Email sandbox feature in Peer-Peer Topics</title>
    <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97108#M3155</link>
    <description>&lt;P&gt;Attachments are opened in a Virtual Machine. If something is detected it's matched with virus total. The message is then quarantined by rules you configure. If it's a zero day it goes right to Google Security Engineering for analysis.&amp;nbsp;&lt;BR /&gt;No message is sent back to the sender since they may be a nefarious actor.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.google.com/a/answer/11479100?hl=en" target="_self"&gt;Gmail Logs&lt;/A&gt; maintain a record of what was discovered.&lt;/P&gt;</description>
    <pubDate>Fri, 27 Sep 2024 16:38:04 GMT</pubDate>
    <dc:creator>claycodes</dc:creator>
    <dc:date>2024-09-27T16:38:04Z</dc:date>
    <item>
      <title>Email sandbox feature</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97077#M3154</link>
      <description>&lt;P&gt;If an incoming email with an infected attachment is caught by the sandbox features, what happens to that message?&lt;/P&gt;&lt;P&gt;I know the assumption is the message is blocked.&lt;/P&gt;&lt;P&gt;But is the message rejected back to the sender?&lt;/P&gt;&lt;P&gt;Does the intended recipient receive a message that an incoming message was blocked?&lt;/P&gt;&lt;P&gt;Are sandbox events logged in the admin console somewhere?&lt;/P&gt;&lt;P&gt;Guess I never really thought about it passed simply enabling the feature.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 16:32:43 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97077#M3154</guid>
      <dc:creator>ddelboccio</dc:creator>
      <dc:date>2024-09-27T16:32:43Z</dc:date>
    </item>
    <item>
      <title>Re: Email sandbox feature</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97108#M3155</link>
      <description>&lt;P&gt;Attachments are opened in a Virtual Machine. If something is detected it's matched with virus total. The message is then quarantined by rules you configure. If it's a zero day it goes right to Google Security Engineering for analysis.&amp;nbsp;&lt;BR /&gt;No message is sent back to the sender since they may be a nefarious actor.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.google.com/a/answer/11479100?hl=en" target="_self"&gt;Gmail Logs&lt;/A&gt; maintain a record of what was discovered.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 16:38:04 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97108#M3155</guid>
      <dc:creator>claycodes</dc:creator>
      <dc:date>2024-09-27T16:38:04Z</dc:date>
    </item>
    <item>
      <title>Re: Email sandbox feature</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97148#M3156</link>
      <description>&lt;P&gt;I do not see any other option for "Security Sandbox" other than enabling it.&amp;nbsp; I do not see any reference to messages being quarantined.&lt;/P&gt;&lt;P&gt;Would the message events appear in the "suspicious attachments" security dashboard card?&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 16:44:45 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97148#M3156</guid>
      <dc:creator>ddelboccio</dc:creator>
      <dc:date>2024-09-27T16:44:45Z</dc:date>
    </item>
    <item>
      <title>Re: Email sandbox feature</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97157#M3157</link>
      <description>&lt;P&gt;Now I am seeing conflicting information in this Google document:&lt;/P&gt;&lt;P&gt;&lt;A href="https://support.google.com/a/answer/7676854?hl=en&amp;amp;ref_topic=9974692" target="_blank"&gt;https://support.google.com/a/answer/7676854?hl=en&amp;amp;ref_topic=9974692&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;When Security Sandbox identifies a message with suspicious or malicious attachments, the message is automatically sent to the recipient's spam folder. Google saves information about the attachment to improve security in other Google products.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Enabling the Security Sandbox setting &lt;STRONG&gt;DISABLES&lt;/STRONG&gt; the Security Sandbox &lt;STRONG&gt;rules&lt;/STRONG&gt; settings.&lt;/P&gt;&lt;P&gt;Does this now mean detected message with infected attachments are sent to SPAM?&lt;/P&gt;</description>
      <pubDate>Fri, 27 Sep 2024 16:50:55 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Email-sandbox-feature/m-p/97157#M3157</guid>
      <dc:creator>ddelboccio</dc:creator>
      <dc:date>2024-09-27T16:50:55Z</dc:date>
    </item>
  </channel>
</rss>

