Microsoft has confirmed the phased removal of Defender Application Guard (MDAG) from Office, with the process beginning in February 2026 and concluding by December 2027. MDAG, which isolates untrusted Office documents in a Hyper-V sandbox to protect against malware, will be replaced by alternative security measures such as Protected View, Defender for Endpoint attack surface reduction (ASR) rules, and Windows Defender Application Control. The company cites performance improvements and a streamlined security experience as reasons for the change, while also acknowledging that the isolation approach, though effective, introduced slower document load times and was occasionally susceptible to vulnerabilities in the sandbox layer.
Administrators are advised to prepare for the transition by enabling recommended alternative protections, as no direct action is required for the removal itself. Microsoft has provided a detailed timeline for the deprecation across different Office update channels, ensuring enterprises have ample time to adapt. The move aligns with the end of support for Windows 11 version 23H2 and reflects a broader shift in Microsoft's security strategy for Office environments.

See real exploitation activity before you spend the cycle.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft confirmed that Defender Application Guard for Office will be fully removed from enterprise Windows environments by late 2027. The change means administrators may need to update workflows and security processes that depended on the feature.
Microsoft announced the deprecation of Microsoft Defender Application Guard for Office, ending the Hyper-V-based sandboxing feature used to isolate untrusted Office documents. The company said organizations should transition to alternatives such as Attack Surface Reduction rules and Windows Defender Application Control.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.