Evil HTML e-mail

I’ve maintained for years that were it not for HTML email the whole malware storm we’ve been battling for the last 7 or so years would have been seriously dampened. Throw out Outlook and it’s progeny and it would have been dimenished still further. When you get right down to it what about email makes it a virus carrier able to infect the recipient? HTML email containing scripts the Internet Explorer object is stupid enough to run.

It seems someone else is paying attention to this fact, mainly the DOD who has now banned the use of HTML e-mail and Outlook Web Access. Go figure.

Anyway, welcome to the club. But we didn’t ban HTML email (as much as I’d love to) we just booted Outlook entirely and have not had anything sucessfully enter our network in 7 years that didn’t require someone stupid enough to run an attachement manually. Sadly, that’s happened a few times. Thank goodness for memory resident virus scanners that actually work.

Comments are closed.


π