funsec mailing list archives

Re: Adobe investigates sophisticatic corporate networksecurity issue


From: Valdis.Kletnieks () vt edu
Date: Tue, 19 Jan 2010 23:38:37 -0500

On Tue, 19 Jan 2010 21:39:33 EST, Larry Seltzer said:
done at the gateway, any such users should, of course, be on
locked-down, sandboxed systems, and of course it's the company's job to
set them up that way.

And then you have the fun and games of trying to forward the PDFs from
the people that made the first cut to HR and the people who need to schedule
interviews and so on.  I suppose they could print them out and send them
via inter-office snail mail and have them scanned back in at the destination,
but what company *wants* to work that way?

Or to phrase it differently - how tightly sandboxed can Ziff Davis make
the systems their writers receive files and e-mail on before it puts a crimp
in the business process? How many hoops would you personally be willing to
jump through to deal with a heavily sandboxed PDF from an outside source for
a juicy story?

Now imagine doing that for the several hundred resumes a day that a large
company can get...

Attachment: _bin
Description:

_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Current thread: