From: "Roger A. Grimes" <[EMAIL PROTECTED]>
> >You may hate MS-Outlook
>
> Yes, worst virus ridden buggy piece of filth ever written.
-Not true. I'd give IRC clients that mantle. It's just that Outlook and
Outlook Express are the most popular, hence the most attacked...but far from
the buggiest or least secure.

Well, you may be right, but I don't consider IRC clients a business tool, which is why I didn't list them, same goes for Kazaa.


-You can apply free MS patch to any Outlook system and get rid of 99% of the
threats headed to your clients. The only popular file attachment type
getting through Outlook after the patch is .zip and the Office apps...which
will get through ANY email client as an attachment. Outlook blocks the most
used attack file attachments, whereas most email clients don't block any at
all. So, what's insecure about it? That people don't apply the recommended
patch released by MS over two years ago?

Perhaps, but given Outlooks long history of new vulnerabilities, I think there are some things wrong with it's basic architecture.


> >MS-Internet Explorer
>
> I prefer Mozilla, but IE isn't that bad, which is why I didn't put it on
the
> list.
-Any browser is exploitable period.  Mozilla and Opera are commonly
exploited.

If there isn't a good alternative there's no point in complaining about it, which is why I didn't list it.


> >All the programs you mention below can easily be made relatively secure
> >by following the vendor's recommended configuration settings and patches.
>
> I disagree.
-Why? Tell me why in your experience do you disagree? I'm just interested.

Well they can be made "relatively secure" for the moment by applying the patches, but most of things I listed have a history of new vulnerabilities popping up all the time, which was what I was trying to get across. How many people have had to cancel their vacation becuase of a qmail or postfix vulnerability - Zero, how many for Sendmail - I don't know, but I bet it's a bunch.


Chris Berry
[EMAIL PROTECTED]
Systems Administrator
JM Associates

"Encrypt everything, and ask questions later."

_________________________________________________________________
Help STOP SPAM with the new MSN 8 and get 2 months FREE* http://join.msn.com/?page=features/junkmail



---------------------------------------------------------------------------
Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
The Gartner Group just put Neoteris in the top of its Magic Quadrant,
while InStat has confirmed Neoteris as the leader in marketshare.
Find out why, and see how you can get plug-n-play secure remote access in
about an hour, with no client, server changes, or ongoing maintenance.
Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
----------------------------------------------------------------------------




Reply via email to