[plug] need to upgrade? -was Re: [plug] kmail and the gigasecond bug

Greg Mildenhall assassin at live.wasp.net.au
Mon Sep 10 17:01:07 WST 2001


On Mon, 10 Sep 2001, Bret Busby wrote:
> Greg Mildenhall wrote:

> > So you think HTML pages are a security risk?

> No - it is not that I regard web pages as security risks (well, not all 
> of them, anyway) - it is that I regard emails that are wriiten in HTML 
> as suspicious.

So you think HTML pages are a security risk?

> > Why do you trust your TCP/IP stack, your mailreader, or any of the other
> > network software you use, but distrust your web browser?
> In terms of the TCP/IP stack, the mailreader, etc, it is all relative, 
> and, I prefer to minimise risk, where I can.

Upgrading to newer software would be far more effectively in reducing your
relative security risks than not viewing HTML pages ever will be.

> What is wrong with plain text messages, anyway?

Nothing. All email should be plain text, but not for security reasons.

-Greg




More information about the plug mailing list