http://www.microsoft.com/technet/security/bulletin/MS02-072.asp?frame=true
The gist of this one is that it's no longer necessary to download malicious code, merely hovering a mouse pointer over an icon for the file invokes the vulnerability. :( It used to be easier to talk with "newbie" users about how-not-to-have security problems. The good news is that there's a patch, the bad news is that folks must find out about it, somehow... JMR --- You are currently subscribed to e-gold-list as: [email protected] To unsubscribe send a blank email to [EMAIL PROTECTED] Use e-gold's Secure Randomized Keyboard (SRK) when accessing your e-gold account(s) via the web and shopping cart interfaces to help thwart keystroke loggers and common viruses.
