funsec mailing list archives

Re: Adobe investigates sophisticatic corporate networksecurity issue


From: Dan Kaminsky <dan () doxpara com>
Date: Wed, 13 Jan 2010 21:13:33 +0100

There is pretty clear evidence that someone (more than one someone,
apparently) opened an attachment they shouldn't have, as described here:

http://www.f-secure.com/weblog/archives/00001854.html


True story:

Back when the ILoveYou virus was going around, I personally heard an
exasperated admin exclaim, utterly without irony:  "Stupid users, thinking
people love them."

Listen.  You are Jane in HR.  It is your job to read PDF's from the
Internet.  Some asshole in IT whines that you should be careful, what the
hell, IT IS YOUR JOB TO READ PDFS FROM THE INTERNET.  In fact, YOU PROBABLY
HIRED THAT GUY WHEN HE SENT YOU HIS RESUME AS A PDF -- that is, if he didn't
send you a doc!

This blaming the victim stuff has to stop.

--Dan
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Current thread: