Cisco Talos says eight vulnerabilities in Microsoft's macOS apps could be abused by attackers to record video and sound from a device, log user input, and more
Windows giant tells Cisco Talos it isn't fixing them — Cisco Talos says eight vulnerabilities in Microsoft's macOS apps …
Context & Ripple Effects
This report puts Microsoft on the other side of a recurring macOS security story: it previously reported a flaw that let attackers bypass Gatekeeper, which Apple fixed in a Gatekeeper-bypass patch.
Related coverage also documented a macOS weakness that allowed apps to run without notarization before Apple patched it in Big Sur. The Talos findings matter because the alleged exposure now sits in Microsoft’s own macOS applications, and Microsoft has declined to remediate it.
First-order effects
- Users of the affected Microsoft macOS apps remain exposed to the reported paths for video and audio capture, input logging, and other attacker activity because Microsoft says it will not fix the eight issues.
- Cisco Talos’s disclosure shifts immediate attention to identifying affected deployments and assessing the practical risk of those application permissions and behaviors.
Second-order effects
- Mac administrators and security teams may apply tighter review to third-party productivity apps whose access could enable surveillance-like outcomes, rather than relying solely on macOS platform protections.
- The decision raises the cost of unresolved application-layer vulnerabilities for Microsoft’s customers: compensating controls or changes in app use may be considered where the reported capabilities are material.
Third-order effects
- If major application vendors increasingly leave certain macOS findings unpatched, security accountability will move further from operating-system safeguards toward app-specific risk assessment and vendor disclosure practices.
- The episode reinforces that code-signing and notarization protections, despite addressing earlier risks such as apps running without notarization, do not eliminate security exposure created inside trusted applications.
The trend: Mac security is becoming increasingly shaped by the behavior and remediation choices of major third-party applications, not just by operating-system defenses.