MEDIUMVulnerability
Global

Introduction to COM usage by Windows threats

·Source: Cisco Talos

Updated:

Executive Summary

Component Object Model (COM) is a fundamental Windows technology used by legitimate applications for object activation, inter-process communication, automation and language-independent component reuse. Those same qualities make it useful to threat actors.

Analysis

Component Object Model (COM) is a fundamental Windows technology used by legitimate applications for object activation, inter-process communication, automation and language-independent component reuse. Those same qualities make it useful to threat actors.
Source Attribution

Originally published by Cisco Talos on Jun 25, 2026.

Related Threats