Hi Task,
On Thu, 6 Mar 2003 07:23:32 -0400
Task Control <[EMAIL PROTECTED]> wrote:
>> He's not "trustworthy", he does his mail jobs logged in as
>> Administrator,
> can you explain this?
Somebody doing his daily work as Administrator seems not to have a good
sense of security. "Administrator" is a privileged account, intended for
administrative tasks, not for "normal work".
If an administrator accidentally executes any malicious code he might
get infected with while doing his work this code can do arbitrary
things, as there are nearly no limits put on admin account.
The same code executed from a "normal user" account can only modify or
delete files owned by that user, while in "Adminstrator" context it can
replace system files, manipulate most user files and so on ... IOW: it
can do nearly everything on that system.
So, as big as the damange can be when a user executes malicious code,
multiply this by 10 to 1000 to get the possible damage when executed
from a privileged account like "Administrator". Somebody working this
risky ain't trustworthy to me.
But to "relativate" my sentence a little bit: it wasn't meant _to
seriously_. Just a "conclusion" of "_Working_ as Administrator" and
"Sends HTML mails albeit the textual content doesn't justifies this"
salted with"sends to a bunch of CCsinstead of using BCC".
So it just was a personal opinion, nothing you should strictly follow
:-)
Just one question left: where the h**l did I know from he's doing his
work logged in as Administrator? Simply:
Content-Disposition: inline;
filename="C:\WINNT\Profiles\ADMINI~1\CONFIG~1\Temp\nsmail1G.gif"
is in the message you put in the RAR. He's logged in to his Windows 2000
( X-Mailer: Mozilla 4.78 [es] (Windows NT 5.0; U) )
^^^^^^^^^^^^^^
as Administrator
(filename="C:\WINNT\Profiles\ADMINI~1\...)
^^^^^^^^
as no ones profile is stored there, execpt admins.
--
Ciao,
Pit
________________________________________________________
Current beta is 1.63b7 | "Using TBBETA" information:
http://www.silverstones.com/thebat/TBUDLInfo.html