You need to identify which users clicked the links in the phishing emails.
What should you do?
Run a message trace and review the results.
Query the mailbox audit log.
Use the URL trace reporting feature.
Review the quarantine mailbox.
Submit