OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Dangerous Windows Flaw
From: Ryan Yagatich (ryagatichCSN1.COM)
Date: Tue Jul 18 2000 - 15:44:56 CDT


>Is this for real?

yes/no, as far as it looks to me, this sounds like a bug that was posted a
while ago about implementing active scripting within an e-mail. the script
was JavaScript / VBScript that would allow content to be changed, but as for
ActiveX, you must have your security settings of your e-mail client be set
to low in order to have it not recogniseable by the end-user. if the
security settings are set to low on every ms-outlook based e-mail client
then yes, but since everyone has different e-mail settings, no. Unless i'm
wrong, and no-one cares about e-mail security.

ryan