on 1/11/01 11:32 AM, "Steve Loughran" <[EMAIL PROTECTED]> wrote:

> Outlook client is broken in many ways, from usability (
> http://www.iseran.com/Win32/UI/outlook_ui_criticism.html ) to security. By
> default it runs ActiveX controls, so once you've found any security hole in
> someone's signed AX control, you can mail it to your target along with the
> appropriate javascript. That is unless your IT people tell you to move the
> mailer to the 'restricted zone' of IE, and bind .VBS to notepad.exe

Note, this is outlook on the PC.

On the Mac, it seriously kicks ass and doesn't have such stupid security
holes.

-jon

Reply via email to