XLM macros are now restricted by default for Microsoft Excel

Publish date: 2024-07-05
excel

It’s safe to say that many individuals, as well as organizations, still use Excel 4.0 (XLM) macro for their automation activities.

This happens even though Microsoft has been encouraging the transition to the more secure Visual Basic for Applications (VBA) for quite some time now.

Such measures had to be taken because malicious third parties abuse macros to inject malware into enterprise systems frequently, so their continued use facilitates a relatively accessible attack window.

Security threats prompted XLM macro restrictions in Excel

The Redmond-based tech giant tried to tackle this problem to some extent by introducing runtime inspection of XLM macro code, back in March 2021.

Now, Microsoft announced that it will restrict XLM macros by default for customers utilizing Excel, after hinting at it back in July 2021, and the change is now rolling out publicly.

Be default, the Excel Trust Center option for the use of macros will indicate that the language is disabled.

IT admins and organizations obviously still have the ability to modify the default behavior using Group Policy, Cloud policies, and ADMX policies.

The new default configuration is now rolling out for the following customers:

Just to make sure there aren’t any confusions, it applies to the September fork version 16.0.14527.20000 and above.

Of course, IT admins can also choose to completely disable the use of existing and new XLM macros across an organization for enhanced security.

What are your feelings on these latest seurity measures imposed by Microsoft? Share your thoughts with us in the comments section below.

ncG1vNJzZmivmaOxsMPSq5ypp6Kpe6S7zGicsZuVoXp1eY9mpJqboqR6pbHFmqylrF2nsrTA0aKaraGfo3w%3D