Anything that lets Active X run, eg a Windows OS is an un-containable security risk. By that I mean that if you have a system that allows that stuff to run you have __NO__ security in that Logical Partition, and you have to be able to sacrifice the Image and start over.
What a load of crap. Can you actually prove what you just stated? Here are some facts for you to digest.
Any operating system / browser environment is just as secure as the users allow it to be. You can run Firefox with NoScript all day long, but how many of us have seen web pages that state "You must have JavaScript enabled to view these pages." A more savvy user would simply decide to either not use that website, or find an alternate way of doing what they need to without lowering the security on their system. However, less informed users might simply decide to create either a permanent or temporary exception for that site without considering the consequences. The same is true with Active X controls. I don't install any I don't trust, and most of the time, even if an application I installed adds an Active X control, I manually go into IE and disable any ActiveX controls I don't trust.
Secondly, anyone who runs their applications, or OS as either root or administrator opens him or herself up to attack regardless of the platform. The fact that there are many more Windows based attacks is because of two reasons. 1) Windows is easy to use, and therefore easier to manipulate, and 2) Windows still owns the lion's share of the desktop market, therefore attacks will have a broader impact. It is foolhardy and ignorant to suggest that any platform is inherently more secure than another. Each has their vulnerabilities, and each will have inexperienced users making bad decisions.