By using the system policy template files (.adm) available in the Microsoft Office 2000 Resource Kit with the System Policy Editor you can actually secure the Office 2000 settings in HKEY_Current_User. However, the systems policy templates do not provide control over the Trusted sources list, nor the XLM on High security registry settings. Consolidated Workarounds Nearly all workarounds start with warning users to avoid any unsolicited attachments from both known and unknown entities.

Their reputations are on the line.

Moreover, when this user resaves a file with signed macros, the digital signature will be lost. Figure 2. Users are not protected from new viruses that their 3rd party virus scanners cannot identify. Modify the Registry on the target computer to point to a network share where the Microsoft Office installation files reside: 1.

High security level only allows signed and trusted code to run. Office 2000 digital signature features depend on a WindowsÒ operating system feature called AuthenticodeÔ technology. Buscar en todos los númerosVista previa de la revista » Ver todos los números1975198019851990199520002005 9 Ene 199516 Ene 199523 Ene 199530 Ene 19956 Feb 199513 Feb 199520 Feb 199527 Feb 19956 However these vulnerabilities are the ones that pose the highest risk to systems.

These anti-virus scanners register their support of this api when they are set up. That will help reduce Excel VBA viruses. HKEY_Local_Machine\Software\Microsoft\Office\9.0\Excel\Security\Level=2 HKEY_Local_Machine\Software\Microsoft\Office\9.0\Word\Security\Level=3 HKEY_Local_Machine\Software\Microsoft\Office\9.0\PowerPoint\Security\Level=2 HKEY_Local_Machine\Software\Microsoft\Office\9.0\Outlook\Security\Level=1 HKEY_Local_Machine\Software\Microsoft\Office\9.0\Access\Security\Level=1 HKEY_Local_Machine\Software\Microsoft\Office\9.0\Excel\Security\DontTrustInstalledFiles=0 HKEY_Local_Machine\Software\Microsoft\Office\9.0\Word\Security\DontTrustInstalledFiles=0 HKEY_Local_Machine\Software\Microsoft\Office\9.0\PowerPoint\Security\DontTrustInstalledFiles=0 HKEY_Local_Machine\Software\Microsoft\Office\9.0\Outlook\Security\DontTrustInstalledFiles=0 HKEY_Local_Machine\Software\Microsoft\Office\9.0\Access\Security\DontTrustInstalledFiles=0 HKEY_Local_Machine\Software\Microsoft\VBA\Trusted The path of these security registry keys in HKEY_Local_Machine matches the path of the subservient registry keys in HKey_Current_User. http://www.softpanorama.org/Malware/Reprints/office_2000_macro_sec.shtml It also provides excellent capabilities for reviewing documents in groups and inserting and embedding third-party application objects into MS Office applications.

If one receives an Office document via e-mail that he absolutely must read, save it and open it in the safe mode program rather than double-clicking the attachment in the e-mail.

has anyone seen any movement by the bowels of ms to actually fix this crap yet? with ooo, this problem is solved since every one of my students and faculty can have it for free!

After un-checking this checkbox, you can digitally sign your add-ins and templates, and then trust your digital certificate. This end of the process is called "verifying a digital signature." The software will do all this work, so that you only see the results of the verification process, which lists

For more information, refer to the ICSA Certified Anti-Virus Products Web site at http://www.icsa.net/services/consortia/anti-virus/certified_products.shtml .

ICSA shares vital security information with security product manufacturers, developers, security experts, academia and corporations.

The user may attempt to change his security settings, but the user will see that the application ignored his changes when he reenters the Tools/Macro/Security dialog. No one else will accept it as real certificate since this certificate is not authenticated, and the user will see a warning not to trust it. Timestamping Office Macro Signatures.

To help the user see why he cannot remove any trusted sources, the administrator can name the unused certificate to indicate the trusted sources list is locked down.

Microsoft has released a patch it says eliminates the vulnerability in Office 2000 and component applications such as Word 2000, Excel 2000 and PowerPoint 2000. A storage component may exist as a standalone component. For example, if Microsoft Office was installed from a CD-ROM drive on the local computer the installation routine is going to refer back to the local CD-ROM for the Data1.msi file

Several other MS Office vulnerabilities have been exploited due to improper input filtration, inadequate string parsing capabilities of the OLE Structured Storage functions, inadequate validation of a stream component variable. Setup cannot find the required files. The only benefit of running with this option is that you won't get security alerts for workbooks with only unsigned VBA.

OLE Structured Storage. McGraw-Hill Professional, November 2004. 8. the install wizard says it cannot find "qualifying products" on the hard or floppy drives.

