funsec mailing list archives

Re: Adobe investigates sophisticatic corporate networksecurity issue


From: Joel Esler <eslerj () gmail com>
Date: Wed, 13 Jan 2010 20:23:33 -0500

On Wed, Jan 13, 2010 at 3:13 PM, Dan Kaminsky <dan () doxpara com> wrote:


There is pretty clear evidence that someone (more than one someone,
apparently) opened an attachment they shouldn't have, as described here:

http://www.f-secure.com/weblog/archives/00001854.html


True story:

Back when the ILoveYou virus was going around, I personally heard an
exasperated admin exclaim, utterly without irony:  "Stupid users, thinking
people love them."

Listen.  You are Jane in HR.  It is your job to read PDF's from the
Internet.  Some asshole in IT whines that you should be careful, what the
hell, IT IS YOUR JOB TO READ PDFS FROM THE INTERNET.  In fact, YOU PROBABLY
HIRED THAT GUY WHEN HE SENT YOU HIS RESUME AS A PDF -- that is, if he didn't
send you a doc!

This blaming the victim stuff has to stop.


Dan,

I'll agree with that!

J



-- 
Joel Esler
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Current thread: