* <[EMAIL PROTECTED]> writes:
> I've been thinking of a scheme in which attachments of certain
> "dangerous" types get mangled, such that the filenames or types are
> intentionally misdeclared. So the user ends up with a plain base64
> text file, which is meaningless, but which he can trivially decode to
> the original.
Check your favourite seach engine for "Email security through procmail"
aka Anomy, it does just that.
> This places the burden of vigilance back on the user where it belongs,
> rather than breeding a generation of click-happy users. And if he does
> decode and run it, and it is a virus, you can point a very accusing
> finger instead of a palms-up shrug.
That won't work because a) even the worst luser soon finds out how to
save and rename the files, and b) you won't be able to take the heat
from your bosses.
--
Robin S. Socha <http://socha.net/>