Skip to content
arrow_back
search
E8-RM-ML3.4 bolt ASD Essential Eight

Untrusted Publisher Macros Cannot Be Enabled via Message Bar or Backstage View

Block untrusted Microsoft Office macros from being enabled using standard interface warnings.

record_voice_over

Plain language

This control is about making sure that untrusted macros in Microsoft Office can't be turned on through the usual ways users interact with the software. Macros can be tiny programs inside Office documents, which, if untrusted, might run harmful commands that could steal data or damage systems. Without this control, your organisation is at risk of letting harmful code run freely through seemingly harmless documents.

Framework

ASD Essential Eight

Control effect

Preventative

E8 mitigation strategy

RM

Classifications

N/A

Official last update

N/A

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML3

Official control statement

Microsoft Office macros digitally signed by an untrusted publisher cannot be enabled via the Message Bar or Backstage View.
bolt ASD Essential Eight E8-RM-ML3.4
priority_high

Why it matters

Allowing macros from untrusted publishers to be enabled can lead to malicious code execution via Office documents, causing compromise or data loss.

settings

Operational notes

Use Office GPO/Intune to block enabling macros from untrusted publishers via Message Bar/Backstage View, and regularly test Office prompt behaviour after updates.

Mapping detail

Mapping

Direction

Controls