Application Hooking
The big two enhancements that Microsoft is talking up the loudest are an improved Attack Surface Reduction (ASR) tool “... configured to block some modules and plug-ins from being loaded by Internet Explorer while navigating to websites belonging to the Internet Zone”.
The new ASR will “also block the Adobe Flash plug-in from being loaded by Microsoft Word, Excel, and PowerPoint.”
So, they are implementing a limited control on application hooking? It's a good first step, but it would be nice if it were more generalized and configurable... and had better online documentation. Still, it's decent of MS to create a rich environment for third-party security vendors.