Microsoft Teams: Suggested contacts for call transfers on Teams phone devices
🚨 The Signal: Teams phone devices now suggest call transfer contacts based on recent activity. This feature aims to reduce clicks but introduces a minor information exposure risk on shared devices.
The Impact
Users of shared Teams phone devices are affected by a minor privacy risk due to contact suggestions based on previous user activity.
- End Users: Potential exposure of recent contacts to subsequent users on shared devices.
- Security Team: Requires review of shared device policies to mitigate information leakage.
- Admins: Need to consider device configuration for shared environments to prevent unintended data display.
The Action
- Review existing policies for shared Teams phone devices regarding user data display.
- Consider implementing device sign-out policies or privacy screens for shared environments.
- Communicate to users on shared devices about the nature of suggested contacts and privacy implications.
Domain: Teams · Impact: low · Workload: Teams