[Enigmail] Malware redux

John Clizbe John at Mozilla-Enigmail.org
Fri Aug 29 19:48:04 PDT 2008


James Gillespie wrote:

> 
> I don't think I have yet seen your reasons for your certainty that you
> have a good copy of your hard drive. Does imaging software filter out
> well-designed ("invisible") malware? Can we detect it in our AV and
> spyware scans?

Imaging software makes no judgment about what it reads and writes.
It just copies.

Where one moves toward a degree of certainty is by following several of the
disciplined practices of IT administration: change control, "Golden" images,
_all_ user data separate from programs, granting the least privilege necessary,
etc...

It's a good deal of work, but it's possible and doable.

-- 
John P. Clizbe                      Inet:John (a) Mozilla-Enigmail.org
You can't spell fiasco without SCO. hkp://keyserver.gingerbear.net  or
     mailto:pgp-public-keys at gingerbear.net?subject=HELP

Q:"Just how do the residents of Haiku, Hawai'i hold conversations?"
A:"An odd melody / island voices on the winds / surplus of vowels"

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 677 bytes
Desc: OpenPGP digital signature
URL: <http://www.mozdev.org/pipermail/enigmail/attachments/20080829/abccf10e/attachment-0001.bin>


More information about the Enigmail mailing list