Question 2 of 13
Your organization has a hybrid Microsoft 365 tenant with an Exchange on-premises server.
- User1 has an on-premises mailbox and MFA is required.
- User2 has an on-premises mailbox and MFA is disabled.
- User3 has an Exchange Online mailbox and MFA is required.
- User4 has an Exchange Online mailbox and MFA is disabled.
You've been asked to implement Microsoft 365 Attack Simulator but before you do your manager needs to know who can receive the fake threats.
Which users should you tell your boss can receive the attack simulation fake threats?