<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: Email File Attachments You Should Not Open</title> <atom:link href="http://www.pcmech.com/article/email-file-attachments-you-should-not-open/feed/" rel="self" type="application/rss+xml" /><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/</link> <description>Helping Normal People Get Their Geek On</description> <lastBuildDate>Wed, 15 Feb 2012 10:29:00 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>By: Rich Menga</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23597</link> <dc:creator>Rich Menga</dc:creator> <pubDate>Sat, 25 Apr 2009 18:24:50 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23597</guid> <description>Your comment is short and to the point - the kind I like (and readers like). You didn&#039;t dilly-dally, dance around or do any of that nonsense. The other guy&#039;s is 500 frickin&#039; words. As if I&#039;d read that. That&#039;s not a comment at that point, it&#039;s a dissertation as far as I&#039;m concerned.I literally lose interest over the 250-word mark. If that happens it is a for-real tl;dr from me and not a cop-out. I even annoyed MYSELF by going slightly over 250 with one of my own replies.Whether the commenter is correct or not doesn&#039;t matter because any point made was totally lost for waffling.And it&#039;s true, &lt;a href=&quot;http://www.youtube.com/watch?v=9FPv2toi5og&quot; rel=&quot;nofollow&quot;&gt;I get no respect&lt;/a&gt;.</description> <content:encoded><![CDATA[<p>Your comment is short and to the point &#8211; the kind I like (and readers like). You didn&#8217;t dilly-dally, dance around or do any of that nonsense. The other guy&#8217;s is 500 frickin&#8217; words. As if I&#8217;d read that. That&#8217;s not a comment at that point, it&#8217;s a dissertation as far as I&#8217;m concerned.</p><p>I literally lose interest over the 250-word mark. If that happens it is a for-real tl;dr from me and not a cop-out. I even annoyed MYSELF by going slightly over 250 with one of my own replies.</p><p>Whether the commenter is correct or not doesn&#8217;t matter because any point made was totally lost for waffling.</p><p>And it&#8217;s true, <a
href="http://www.youtube.com/watch?v=9FPv2toi5og" rel="nofollow">I get no respect</a>.</p> ]]></content:encoded> </item> <item><title>By: Martin Thomas</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23586</link> <dc:creator>Martin Thomas</dc:creator> <pubDate>Fri, 24 Apr 2009 22:29:55 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23586</guid> <description>Are you for real Rich?You&#039;ve been completely schooled by more than one commenter and your reaction is to behave like a YouTube poster? With silly half relevant links?There is a huge difference in saying you &quot;might be wrong&quot; in an opinion piece to actually saying &quot;I was wrong.&quot;By the way, I watched an Mp4 earlier, so make sure you don&#039;t open this post.Loved your trying to &quot;tl;dr&quot; yourself out of a lost cause argument, like a petulant teenager!Keep it up, you might attract more readers. But no respect, trust me.</description> <content:encoded><![CDATA[<p>Are you for real Rich?</p><p>You&#8217;ve been completely schooled by more than one commenter and your reaction is to behave like a YouTube poster? With silly half relevant links?</p><p>There is a huge difference in saying you &#8220;might be wrong&#8221; in an opinion piece to actually saying &#8220;I was wrong.&#8221;</p><p>By the way, I watched an Mp4 earlier, so make sure you don&#8217;t open this post.</p><p>Loved your trying to &#8220;tl;dr&#8221; yourself out of a lost cause argument, like a petulant teenager!</p><p>Keep it up, you might attract more readers. But no respect, trust me.</p> ]]></content:encoded> </item> <item><title>By: Rich Menga</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23585</link> <dc:creator>Rich Menga</dc:creator> <pubDate>Fri, 24 Apr 2009 21:39:19 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23585</guid> <description>http://www.pcmech.com/article/has-the-pc-market-hit-its-saturation-point/Posted this morning. States I could be wrong directly in the article. Twice.</description> <content:encoded><![CDATA[<p><a
href="http://www.pcmech.com/article/has-the-pc-market-hit-its-saturation-point/" rel="nofollow">http://www.pcmech.com/article/has-the-pc-market-hit-its-saturation-point/</a></p><p>Posted this morning. States I could be wrong directly in the article. Twice.</p> ]]></content:encoded> </item> <item><title>By: Tom Kirkham</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23583</link> <dc:creator>Tom Kirkham</dc:creator> <pubDate>Fri, 24 Apr 2009 21:02:28 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23583</guid> <description>&quot;too long, didn&#039;t read.&quot;  Wow.Rich, nothing personal, but as you advance in your professional career, I would hope that you would take the time to at least consider that you are wrong sometimes.  We all are.  Failing to keep an open mind and making corrections for incorrect assumptions is a fast track to failure, and in the case of writing, ridicule.Just saying.</description> <content:encoded><![CDATA[<p>&#8220;too long, didn&#8217;t read.&#8221;  Wow.</p><p>Rich, nothing personal, but as you advance in your professional career, I would hope that you would take the time to at least consider that you are wrong sometimes.  We all are.  Failing to keep an open mind and making corrections for incorrect assumptions is a fast track to failure, and in the case of writing, ridicule.</p><p>Just saying.</p> ]]></content:encoded> </item> <item><title>By: Rich Menga</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23582</link> <dc:creator>Rich Menga</dc:creator> <pubDate>Fri, 24 Apr 2009 20:33:18 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23582</guid> <description>&lt;a href=&quot;http://www.urbandictionary.com/define.php?term=tl%3Bdr&quot; rel=&quot;nofollow&quot;&gt;TL;DR&lt;/a&gt;</description> <content:encoded><![CDATA[<p><a
href="http://www.urbandictionary.com/define.php?term=tl%3Bdr" rel="nofollow">TL;DR</a></p> ]]></content:encoded> </item> <item><title>By: Phil M</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23581</link> <dc:creator>Phil M</dc:creator> <pubDate>Fri, 24 Apr 2009 20:21:16 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23581</guid> <description>You know, I&#039;m now beyond caring. If you can&#039;t accurately judge what files might be harmful, then please run around like that.But to clarify a couple of points:a) I know how browsers work .. I think we talked cross-purposes here. The video itself does not have malicious code in it, they can&#039;t contain executable code. What they do is simply make reference to a fake codec, then ask you to visit blahblah.com to download and retrieve it. Of course, once you have landed on that site, you&#039;re already hit with the nasty. My browser point is this, if your malware filter is any good then the best a dodgy video can do is send you to a website that is blocked.b) Oh just drop the Symantec bashing. It&#039;s not 2002 anymore, they&#039;re bleugh at worst, and their threat centre is pretty much the same.c) &quot;opening video files via youtube&quot; is not the same as opening the file you might want. It&#039;s at least transcoded another time ... and more than that you are adding an unnecessary workload (which might read visit site&gt;subscribe&gt;confirm&gt;upload&gt;wait processing&gt;send ...) to the person wanting to send you the video, all so you can sit behind your imaginary wall of solitude.You say I blab about ancient holes in software ... well you know all the macro viruses that you cry about are essentially exploiting said holes? As with the PDF? And, for the most part, your video formats? Can you not see the hypocrisy? The viruses that you cower behind your elaborate workflows from are no more a threat to an updated system than the JPEG exploit. Bar, of course, the EXE / ZIP argument.&quot;I couldn’t care less how many people like you say it wastes time to open files using alternative means or not open them at all, because it’s more important to me to stay secure rather than open a file that compromises my system...&quot;You know, I can vaguely agree with you. But here is the point once more, there is no threat (at least no-more than can be had from day-to-day web browsing). The sad thing is, you don&#039;t see it.Surely what you are doing here is trying to exercise best practise, and avoid any potentially unpatched holes, that a new virus might wander thru, via a DOC or whatever. But, that could quite frankly leave you with *any* vector of assault to cover (the JPEG hole was VASTLY effective because it was unexpected - there is nothing to stop the same happening to your &quot;safe&quot; file formats - in particular the MP3) .. and you&#039;re back to just opening files from people you trust, with known content. Do you not see?Anyway .. if you want to live the life of a simpleton (this bad, this good) then go ahead. Hopefully anyone reading this is more keyed in to practicality and will actually perform a threat assessment, which is frankly both quick and easy.</description> <content:encoded><![CDATA[<p>You know, I&#8217;m now beyond caring. If you can&#8217;t accurately judge what files might be harmful, then please run around like that.</p><p>But to clarify a couple of points:</p><p>a) I know how browsers work .. I think we talked cross-purposes here. The video itself does not have malicious code in it, they can&#8217;t contain executable code. What they do is simply make reference to a fake codec, then ask you to visit blahblah.com to download and retrieve it. Of course, once you have landed on that site, you&#8217;re already hit with the nasty. My browser point is this, if your malware filter is any good then the best a dodgy video can do is send you to a website that is blocked.</p><p>b) Oh just drop the Symantec bashing. It&#8217;s not 2002 anymore, they&#8217;re bleugh at worst, and their threat centre is pretty much the same.</p><p>c) &#8220;opening video files via youtube&#8221; is not the same as opening the file you might want. It&#8217;s at least transcoded another time &#8230; and more than that you are adding an unnecessary workload (which might read visit site&gt;subscribe&gt;confirm&gt;upload&gt;wait processing&gt;send &#8230;) to the person wanting to send you the video, all so you can sit behind your imaginary wall of solitude.</p><p>You say I blab about ancient holes in software &#8230; well you know all the macro viruses that you cry about are essentially exploiting said holes? As with the PDF? And, for the most part, your video formats? Can you not see the hypocrisy? The viruses that you cower behind your elaborate workflows from are no more a threat to an updated system than the JPEG exploit. Bar, of course, the EXE / ZIP argument.</p><p>&#8220;I couldn’t care less how many people like you say it wastes time to open files using alternative means or not open them at all, because it’s more important to me to stay secure rather than open a file that compromises my system&#8230;&#8221;</p><p>You know, I can vaguely agree with you. But here is the point once more, there is no threat (at least no-more than can be had from day-to-day web browsing). The sad thing is, you don&#8217;t see it.</p><p>Surely what you are doing here is trying to exercise best practise, and avoid any potentially unpatched holes, that a new virus might wander thru, via a DOC or whatever. But, that could quite frankly leave you with *any* vector of assault to cover (the JPEG hole was VASTLY effective because it was unexpected &#8211; there is nothing to stop the same happening to your &#8220;safe&#8221; file formats &#8211; in particular the MP3) .. and you&#8217;re back to just opening files from people you trust, with known content. Do you not see?</p><p>Anyway .. if you want to live the life of a simpleton (this bad, this good) then go ahead. Hopefully anyone reading this is more keyed in to practicality and will actually perform a threat assessment, which is frankly both quick and easy.</p> ]]></content:encoded> </item> <item><title>By: Rich Menga</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23555</link> <dc:creator>Rich Menga</dc:creator> <pubDate>Thu, 23 Apr 2009 20:48:28 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23555</guid> <description>Symantec is just a bad example all around. The &quot;threat info/threat center&quot; centers from McAfee or Trend Micro are (somewhat) more trustworthy.I never said phishing attacks were irrelevant.There is no video that is loaded exclusively by the browser alone and that&#039;s why phishing filters don&#039;t filter them out, genius. When the browser encounters a video file it will pass by known extension (.AVI, .WMV, .MOV, etc.) to the appropriate application be it embedded within as a plugin in-browser or as an app outside the browser. Once the file is opened by its respective app, that&#039;s where the scripting/redirecting happens and not before and that&#039;s why the phishing filter doesn&#039;t pick it up first. If you knew anything about browsers you&#039;d understand that.However, as I said in the article in very plain English, if you open these files using alternative means such as YouTube, never will you encounter any redirects or malicious code.If you want to continue to blab away about trusted users that still send infected files regardless, ancient holes that were patched 5 years ago, horrible anti-virus products that are near-impossible to uninstall and so on, go right ahead. If it makes you feel better to spout that crap out, whatever. I&#039;m not the boss of you.I couldn&#039;t care less how many people like you say it wastes time to open files using alternative means or not open them at all, because it&#039;s more important to me to stay secure rather than open a file that compromises my system, period.</description> <content:encoded><![CDATA[<p>Symantec is just a bad example all around. The &#8220;threat info/threat center&#8221; centers from McAfee or Trend Micro are (somewhat) more trustworthy.</p><p>I never said phishing attacks were irrelevant.</p><p>There is no video that is loaded exclusively by the browser alone and that&#8217;s why phishing filters don&#8217;t filter them out, genius. When the browser encounters a video file it will pass by known extension (.AVI, .WMV, .MOV, etc.) to the appropriate application be it embedded within as a plugin in-browser or as an app outside the browser. Once the file is opened by its respective app, that&#8217;s where the scripting/redirecting happens and not before and that&#8217;s why the phishing filter doesn&#8217;t pick it up first. If you knew anything about browsers you&#8217;d understand that.</p><p>However, as I said in the article in very plain English, if you open these files using alternative means such as YouTube, never will you encounter any redirects or malicious code.</p><p>If you want to continue to blab away about trusted users that still send infected files regardless, ancient holes that were patched 5 years ago, horrible anti-virus products that are near-impossible to uninstall and so on, go right ahead. If it makes you feel better to spout that crap out, whatever. I&#8217;m not the boss of you.</p><p>I couldn&#8217;t care less how many people like you say it wastes time to open files using alternative means or not open them at all, because it&#8217;s more important to me to stay secure rather than open a file that compromises my system, period.</p> ]]></content:encoded> </item> <item><title>By: Phil M</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23550</link> <dc:creator>Phil M</dc:creator> <pubDate>Thu, 23 Apr 2009 15:48:20 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23550</guid> <description>Firstly - I want to clear something up, I do not &quot;trust&quot; Symantec. Their website however is a really good resource for current threat situation analysis. As are many, actually. Frankly, it was the first name I plucked out of the hat .. though apparently the new versions are much, much better.Anyhoo..There is a serious lack of logic in your argument. You state phishing attacks are irrelevant because there are filters? Shouldn&#039;t that make viruses irrelevant because AV is a filter? AV screening is about 98-99% effective, whereas I have only had Google / firefox block a handful of the sites that I visited **that I knew were bad** to test the filter. It&#039;s a seriously weak effort, blocking only the most virulent sites.I know the JPEG hole is fixed, I mentioned it to show how your black/white policy is flawed, exceptions to the rule wreak havok. You simply cant say &quot;all this is always bad&quot; and &quot;all this is always ok&quot; and leave it at that. The policy of actually saying WHY is how people learn. But then we wouldn&#039;t need blogs like this, would we? ;)Email clients don&#039;t block images from all senders .. not when almost everyone allows them from known senders (the kind hijacked). I use a HTML image tracker in bulk emails and somewhere between 70-80 of emails opened load HTML images. Even when there are no actual images to be &quot;unblocking&quot; I see upwards of 30%.You say &quot;Trusted users cannot be trusted with attachments using file extensions known to harbor viruses and malicious code, period. To believe otherwise is to be a fool.&quot;And you know what? I agree!! What we disagree on is your threat assessment of a DOC / XLS / MOV file, which, and I will say it again, CAN HAVE THE VULNERABILITY TURNED OFF! And the PDF virus, like the JPEG, is closed. Please, if you are going to swing that big hammer of damnation, do it fairly across the board. Where, pray tell, is the AVI? Much more vulnerable than a MOV.Finally, the vulnerabilities in the movie files, are forced redirects / links to infected websites for a good ol&#039; driveby. If your magical corbomite browser filter was any good, then movie files are also safe. Not to mention, that by the time they have propagated on P2P A/V signatures are more than a match.</description> <content:encoded><![CDATA[<p>Firstly &#8211; I want to clear something up, I do not &#8220;trust&#8221; Symantec. Their website however is a really good resource for current threat situation analysis. As are many, actually. Frankly, it was the first name I plucked out of the hat .. though apparently the new versions are much, much better.</p><p>Anyhoo..</p><p>There is a serious lack of logic in your argument. You state phishing attacks are irrelevant because there are filters? Shouldn&#8217;t that make viruses irrelevant because AV is a filter? AV screening is about 98-99% effective, whereas I have only had Google / firefox block a handful of the sites that I visited **that I knew were bad** to test the filter. It&#8217;s a seriously weak effort, blocking only the most virulent sites.</p><p>I know the JPEG hole is fixed, I mentioned it to show how your black/white policy is flawed, exceptions to the rule wreak havok. You simply cant say &#8220;all this is always bad&#8221; and &#8220;all this is always ok&#8221; and leave it at that. The policy of actually saying WHY is how people learn. But then we wouldn&#8217;t need blogs like this, would we? <img
src='http://pcmech.pcmediainc.netdna-cdn.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p><p>Email clients don&#8217;t block images from all senders .. not when almost everyone allows them from known senders (the kind hijacked). I use a HTML image tracker in bulk emails and somewhere between 70-80 of emails opened load HTML images. Even when there are no actual images to be &#8220;unblocking&#8221; I see upwards of 30%.</p><p>You say &#8220;Trusted users cannot be trusted with attachments using file extensions known to harbor viruses and malicious code, period. To believe otherwise is to be a fool.&#8221;</p><p>And you know what? I agree!! What we disagree on is your threat assessment of a DOC / XLS / MOV file, which, and I will say it again, CAN HAVE THE VULNERABILITY TURNED OFF! And the PDF virus, like the JPEG, is closed. Please, if you are going to swing that big hammer of damnation, do it fairly across the board. Where, pray tell, is the AVI? Much more vulnerable than a MOV.</p><p>Finally, the vulnerabilities in the movie files, are forced redirects / links to infected websites for a good ol&#8217; driveby. If your magical corbomite browser filter was any good, then movie files are also safe. Not to mention, that by the time they have propagated on P2P A/V signatures are more than a match.</p> ]]></content:encoded> </item> <item><title>By: Rich Menga</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23544</link> <dc:creator>Rich Menga</dc:creator> <pubDate>Thu, 23 Apr 2009 12:05:14 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23544</guid> <description>Jumpin&#039; Hey-Zeus that comment was way too frickin&#039; long.. ugh. Fine, I&#039;ll go long.I didn&#039;t say enterprise shouldn&#039;t be able to open standard office suite extensions. They can because they have a person like you to fix it; it&#039;s part of your job. The rest of us don&#039;t have I.T. employees at the ready.Trusted users cannot be trusted with attachments using file extensions known to harbor viruses and malicious code, period. To believe otherwise is to be a fool. Murphy&#039;s Law will eat you for breakfast with that line of thinking.The JPEG exploit you mention was a problem 5 years ago and fixed: http://www.microsoft.com/technet/security/Bulletin/MS04-028.mspx You might want to try something a tad more recent. And BESIDES WHICH, all webmail providers *and* mail clients auto-block images even for all senders and detect malformed JPEG images automatically. HTML-based mail is also auto-filtered on arrival. Your example is old and was taken care of ages ago on all fronts.You trust the same guys that brought us the dreaded Norton Security Suite.. the same one that proved almost impossible to uninstall - so much so they had to release a removal tool. Symantec can go pound sand.Per your &quot;drive-by download&quot; point, phishing filters are in all major browsers now. I don&#039;t have to write an article on it because the issue has already been addressed.</description> <content:encoded><![CDATA[<p>Jumpin&#8217; Hey-Zeus that comment was way too frickin&#8217; long.. ugh. Fine, I&#8217;ll go long.</p><p>I didn&#8217;t say enterprise shouldn&#8217;t be able to open standard office suite extensions. They can because they have a person like you to fix it; it&#8217;s part of your job. The rest of us don&#8217;t have I.T. employees at the ready.</p><p>Trusted users cannot be trusted with attachments using file extensions known to harbor viruses and malicious code, period. To believe otherwise is to be a fool. Murphy&#8217;s Law will eat you for breakfast with that line of thinking.</p><p>The JPEG exploit you mention was a problem 5 years ago and fixed: <a
href="http://www.microsoft.com/technet/security/Bulletin/MS04-028.mspx" rel="nofollow">http://www.microsoft.com/technet/security/Bulletin/MS04-028.mspx</a> You might want to try something a tad more recent. And BESIDES WHICH, all webmail providers *and* mail clients auto-block images even for all senders and detect malformed JPEG images automatically. HTML-based mail is also auto-filtered on arrival. Your example is old and was taken care of ages ago on all fronts.</p><p>You trust the same guys that brought us the dreaded Norton Security Suite.. the same one that proved almost impossible to uninstall &#8211; so much so they had to release a removal tool. Symantec can go pound sand.</p><p>Per your &#8220;drive-by download&#8221; point, phishing filters are in all major browsers now. I don&#8217;t have to write an article on it because the issue has already been addressed.</p> ]]></content:encoded> </item> <item><title>By: Phil M</title><link>http://www.pcmech.com/article/email-file-attachments-you-should-not-open/comment-page-1/#comment-23537</link> <dc:creator>Phil M</dc:creator> <pubDate>Thu, 23 Apr 2009 10:25:15 +0000</pubDate> <guid
isPermaLink="false">http://www.pcmech.com/article/email-file-attachments-you-should-not-open/#comment-23537</guid> <description>I will be diplomatic here, and state that your PC environment is clearly different to the one I am referring to.If you suggest that any workplace shouldn&#039;t be opening DOC / ZIP / PDF or XLS files then I worry, I do. Even if you do open it in Google docs first then the macro virus (if present) will not be detected, leaving that doc in badly supported purgatory. The vastly preferable option is just to disable macro! Then your DOC and XLS files are safe to open.Now, here is where the problem lies. I openly accept that P2P videos are dodgy .. but the voodoo I refer to is one of these videos magically infecting another, safe, video.Telling users to accept email attachments that are EXPECTED+From a trusted source is the only way to go.Take this scenario:Jane records a video of his daughter to send to Bob, who is working overseas. Their camera makes a MOV file. She speaks to him on the phone, and tells him that she is sending it. Bob, on receiving this, should NEVER consider this a virus .. because the chance of it being so is so close to zero it&#039;s silly.Take this scenario:Bob is at work. He receives a video file that is apparently in an email from Jane. The email certainly doesn&#039;t look like her usual style... where is the love? This, is where caution should be exercised.Now, I&#039;m not suggesting people open anything, but telling people to tip toe around their online lives for fear of virus attack is silly, and takes the joy out of computing. This is what leads people to be too scared to do anything because it might break.Ironically, you suggest that HTML email and JPEG images are fine. What!? You know that a JPEG header was a very famous virus exploit, right? And you know most malicious redirects and tracking is done in HTML, yes? Other than EXE files these two are the most dangerous.This, above, is the danger of your silly black and white policy. It&#039;s never that simple. Danger is based on content and intent, and NOT form. You need to tell users to assess what they are looking at, not check it against a list that is in-exhaustive, and frankly inaccurate.The best policy, by leap years, is a good training on these basics and (frankly) regular disk imaging to wipe it back if it happens. As of yet, this has only been required for a major installation f**k up on a set of creative drivers.Viruses by email attachment are a dying threat. Ask Symantec. Take a look at the top 25 virus threats and count how many are arriving by email .. it insignificant. Where is your article on drive-by downloads and malware infested websites, the real threat?</description> <content:encoded><![CDATA[<p>I will be diplomatic here, and state that your PC environment is clearly different to the one I am referring to.</p><p>If you suggest that any workplace shouldn&#8217;t be opening DOC / ZIP / PDF or XLS files then I worry, I do. Even if you do open it in Google docs first then the macro virus (if present) will not be detected, leaving that doc in badly supported purgatory. The vastly preferable option is just to disable macro! Then your DOC and XLS files are safe to open.</p><p>Now, here is where the problem lies. I openly accept that P2P videos are dodgy .. but the voodoo I refer to is one of these videos magically infecting another, safe, video.</p><p>Telling users to accept email attachments that are EXPECTED+From a trusted source is the only way to go.</p><p>Take this scenario:</p><p>Jane records a video of his daughter to send to Bob, who is working overseas. Their camera makes a MOV file. She speaks to him on the phone, and tells him that she is sending it. Bob, on receiving this, should NEVER consider this a virus .. because the chance of it being so is so close to zero it&#8217;s silly.</p><p>Take this scenario:</p><p>Bob is at work. He receives a video file that is apparently in an email from Jane. The email certainly doesn&#8217;t look like her usual style&#8230; where is the love? This, is where caution should be exercised.</p><p>Now, I&#8217;m not suggesting people open anything, but telling people to tip toe around their online lives for fear of virus attack is silly, and takes the joy out of computing. This is what leads people to be too scared to do anything because it might break.</p><p>Ironically, you suggest that HTML email and JPEG images are fine. What!? You know that a JPEG header was a very famous virus exploit, right? And you know most malicious redirects and tracking is done in HTML, yes? Other than EXE files these two are the most dangerous.</p><p>This, above, is the danger of your silly black and white policy. It&#8217;s never that simple. Danger is based on content and intent, and NOT form. You need to tell users to assess what they are looking at, not check it against a list that is in-exhaustive, and frankly inaccurate.</p><p>The best policy, by leap years, is a good training on these basics and (frankly) regular disk imaging to wipe it back if it happens. As of yet, this has only been required for a major installation f**k up on a set of creative drivers.</p><p>Viruses by email attachment are a dying threat. Ask Symantec. Take a look at the top 25 virus threats and count how many are arriving by email .. it insignificant. Where is your article on drive-by downloads and malware infested websites, the real threat?</p> ]]></content:encoded> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using apc
Page Caching using apc
Database Caching 39/59 queries in 0.026 seconds using apc
Content Delivery Network via pcmech.pcmediainc.netdna-cdn.com

Served from: www.pcmech.com @ 2012-02-15 13:00:12 -->
