ACSC outlines Office macro security measures
The Australian Cyber Security Centre (ACSC) has updated its online Microsoft Office Macro Security document, outlining steps that can be taken to keep systems secure from malicious macros.
According to the ACSC, “An increasing number of attempts to compromise organisations using malicious macros have been observed. In particular, adversaries have been observed using social engineering techniques to entice users into executing malicious macros in Microsoft Office files. The purpose of these malicious macros can range from cybercrime to more sophisticated exploitation attempts.
“By understanding the business requirements for the use of macros, and applying the recommendations in this document, organisations can effectively manage the risk of allowing macros in their environments.”
The document explains Microsoft Office macros and their use, and details ways in which different versions of Office can be made more secure via changing policy settings and other approaches.
The ACSC website also provides lots of information on other methods for hardening various versions Office, as well as Windows and other software, including advice for users of the now-unsupported Windows 7.
AI generated code found to produce predictable weaknesses
Secure Code Warrior's AI Trust Index is based on research indicating that AI-generated code...
11:11 Systems launching Managed SASE solution worldwide
Managed infrastructure service provider 11:11 Systems has teamed up with Cato Networks to expand...
Orro launches managed secure browser service
Australian technology services provider Orro has launched a fully managed secure browser service...
