- TalkBack 14 of 34:
- Next »
- « Previous
- Thread View
- Flat View
- Do you plan on collecting your bonus anytime in the future?
-
jfrankcarr wrote: "Phishing attempts and virus/trojan emails are stopped by mail filtering software at the server side."
That's some mightly impressive prognostic firewall software you must be using, because how can it predict and detect the following blended threat?
1) Hostile emails are increasingly using the tactic of grabbing the email address, In-Reply-To and subject headers from the outlook inbox, making it appear that the email is a reply to a legitmate email.
2) The email itself contains the social engineering and a URL to one of many compromised webservers.
3) The URL links to a SSL (https://) site. The connection is encrypted from the website to the browser -- no chance of the firewall proxy reading the content.
4) The hostile webpage itself exploits a combination of known vulnerabilities in Microsoft's Internet Explorer that Microsoft has chosen not to relase an update to fix.
http://www.safecenter.net/UMBRELLAWEBV4/ie_unpatched/index.html
Requiring personal responsibility by employees for their Internet activities on the job has also helped.
How can they tell if it's a threat? What indication does the software give them?
To quote myself back in 2000...
http://www.google.com/groups?threadm=slrn8t15s9.1bt.heretic%40heretic.ihug.co.nz
I do agree, but it is easier saying "practice safe computing" than producing
a list of practical rules if your using Microsoft Office in a large
organization ( getting the nice people, especially the overworked ones, to
follow it is a another matter ).
http://www.google.com/groups?threadm=slrn8j2cen.pns.heretic%40localhost.localdomain
Human nature being as it is, relying on users to follow a strict protocol
when dealing with incoming email or other Office documents via the internet
is doomed to failure. Love letter from whom? The temptation to open the
attachments is too great even for the most security conscious person.
To quote Mark Twain "You can fool some of the people all of the time,
and all of the people some of the time ...". When presented with a dialog
window with Yes/No buttons, a LOT of users click yes without even reading
the dialog.
You stated that MSBlast did cost you your bonus last year. How can expect to earn any such bonus anytime in the near future when that vendor you rely upon, Microsoft, continues to choose not to secure their software against attack?
http://www.google.com/search?q=%22shatter+attack%22 - Posted by: David Mohring Posted on: 03/20/04 You are currently: a Guest | Members login | Terms of Use
What do you think?
SponsoredWhite Papers, Webcasts, and Downloads
- Building the Virtualized Enterprise with VMware Infrastructure VMware VMware virtualization software has been adopted by over 120,000 enterprise ... Download Now
- Open Standards Technologies Provide the Ingredients for Delivering Security Across the Papa Gino's Enterprise Dell Papa Gino's Holdings Corporation founded by the entrepreneur operates one ... Download Now
- Building the Virtualized Enterprise with VMware Iinfrastructure VMware VMware virtualization software has been adopted by over 120,000 enterprise ... Download Now
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
- Save time with automated shipping solutions
-
The Business Essentials Guide provides you useful tools and templates to help grow your business and save you time with automated shipping solutions.
- Visit the UPS Business Essentials Guide
- Keep Up With The Latest In Document Management with The DocuMentor.
-
Doc delivers the scoop on today's enterprise content management, printer maintenance, and all other issues related to document management. It's the DocuMentor Blog.
- Learn more >>
- The best support in the Linux business
-
If Linux is going to power your mission-critical applications, you'd better have the best support known to business. Novell was rated the top provider of Linux technical support.

- Learn more >>
- New Online Dashboard for IT Leaders
-
Read about top issues IT decision-makers face every day, plus get cost-effective solutions to real-life IT problems.
- Learn more >>
- Microsoft Dynamics CRM Online - Free Six-Month Trial for Eligible Organizations
-
Microsoft Dynamics CRM Online provides fast online access, simple contact management and better sales performance for a low monthly cost - the best value on the market today.

- Learn more about the free, six-month trial offer>>
SmartPlanet
- Thought-provoking progressive ideas on diverse topics that intersect with technology, business, and life, and matter to the world at large. Visit SmartPlanet
- More from IBM
- Innovate your business' process model, play against the market, compete against others on our scoreboards and WIN! Try INNOV8 2.0: A BPM Simulator
- Enabling Real-World Business Transformation through IBM Service Management Read the EMA Analyst Report





