Security News > 2025 > April > ActiveX blocked by default in Microsoft 365 because remote code execution is bad, OK?

2025-04-15 12:25
Stopping users shooting themselves in the foot with last century's tech Microsoft has twisted the knife into ActiveX once again, setting Microsoft 365 to disable all controls without so much as a prompt.…
News URL
https://go.theregister.com/feed/www.theregister.com/2025/04/15/activex_microsoft_365/
Related news
- Microsoft blocks ActiveX by default in Microsoft 365, Office 2024 (source)
- Botnet targets Basic Auth in Microsoft 365 password spray attacks (source)
- Microsoft links recent Microsoft 365 outage to buggy update (source)
- New Microsoft 365 outage impacts Teams, causes call failures (source)
- Elastic Releases Urgent Fix for Critical Kibana Vulnerability Enabling Remote Code Execution (source)
- Microsoft 365 apps will prompt users to back up files in OneDrive (source)
- Microsoft replacing Remote Desktop app with Windows App in May (source)
- Malicious Adobe, DocuSign OAuth apps target Microsoft 365 accounts (source)
- WordPress security plugin WP Ghost vulnerable to remote code execution bug (source)
- Hidden Threats: How Microsoft 365 Backups Store Risks for Future Attacks (source)