OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: [suse-security] FSCKING VIRII

From: Tom Knight (thomas.knightahds.ac.uk)
Date: Tue Mar 02 2004 - 05:45:02 CST


> -----Original Message-----
> From: Ray Leach [mailto:raymondlknowledgefactory.co.za]
> Sent: 02 March 2004 11:19
> To: SuSE Security
> Subject: Re: [suse-security] FSCKING VIRII
>
>
> Why not just stop using M$ Outbreak and Exchange? Outbreak is the only
> client that is propagating these virii ...

Point 1: Arjan isn't using Outlook, check the headers ;-)
Point 2: Outlook isn't the only MUA that propagates these worms. Bagle (for
example) uses its own smtp engine and relies on a (stupid) user opening an
attachment. The only reliance is use of Windows and lack of virus awareness.
Point 3: In the "real world" people have to battle an awful lot to dump
Outlook and Exchange (think corporate investment), and until that's done
they may still have to support these programs.

On the other hand... Something is stripping the viral attachment from these
messages, why can't it just dump the entire message?

HTH,

Tom.

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here