Security Luddites

Spaf is crowing because people are getting hacking with Word zero days. It doesn’t take a genius to realize that when there are zero days you might want to take some action. What is debatable is what that action should be.
Security people have a reputation for having feet of clay and for using the word “no” more than a bean counter at budget time. Perhaps, just perhaps, it is possible to have a solution other than blocking word documents. Why stop at word documents, what about vulnerabilities in Powerpoint, Adobe Reader, Quicktime, Real Player, Media Player.
I’ve written about this time and time again. If you have bad antivirus and your mitigation for that is to block vulnerable file types, then sooner or later, you’ll be blocking everything but FAX.