• Ephera@lemmy.ml
    link
    fedilink
    English
    arrow-up
    17
    ·
    edit-2
    3 days ago

    Microsoft managed to build a file format for spreadsheets, text documents and such, which can be used to run arbitrary code on the PC where it’s opened (via VBA). In a move that no one could have predicted, this is used to distribute malware.
    And their bandaid fix is this “Protected Mode”, which is entered when you receive a document from another organization. In Protected Mode, it does not run VBA code until you exit it.

    Unfortunately, their solution has conditioned users to basically always exit Protected Mode.

    • bleistift2@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      6
      ·
      3 days ago

      The annoying part is, they could check if the file even contains malicious code. But they don’t and instead default to protected mode, even for basic files.