You are here: silicon.com > Software > Security Strategy

Security Strategy

Outlook flaws could give virus writers a field day

US researcher pinpoints holes in Outlook 2002...

By Pia Heikkila

Published: 22 March 2002 16:25 GMT

The latest version of Microsoft's popular Outlook software has been shown to contain serious vulnerabilities which could leave users prone to viruses and hack attacks.

Richard Smith, chief technology officer of the Denver-based security specialist Privacy Foundation, said he wanted users to be aware of the potential pitfalls of Outlook 2002.

According to Smith, one of the biggest problems is the ability for an email that includes a special HTML tag known as an IFRAME to run an attached program without the user's knowledge.

That weakness could be exploited to spread deadly viruses.

Outlook can also run JavaScript in emails and gives users the ability to read and set cookies within the program - again, potential security problems.

He also said Outlook generates unnecessary alert boxes - a "cry wolf" syndrome which leads to user complacency.

The criticisms come just two months after Microsoft launched its Trustworthy Computing Initiative, driven by Bill Gates himself.

Jan Guldentops a founding partner of open source security firm Better Access Labs, agreed with Smith but fuelled the Microsoft security debate further.

"There is better email software available, but because Microsoft has a monopoly over the market, no one gets to use the more secure products available on the market," he said.

Guldentops added that there are ways to make Outlook more secure: "There are a number of vendors who sell plug-ins for Outlook. You can build extra security on your mail server, but it does mean spending more money."

Microsoft UK was unavailable for comment.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Nick Heath Your top HR tech priorities for next year revealed How to make human resources IT work for you

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business


  • Jobs
Basingstoke/Program Manager/45K-55K/Defence Project Management

Basingstoke/Program Manager/45K-55K/Defence Project Management The UK Programme Manager will provide strong leadership to multi-disciplinary teams in ...

Transition/Change Management Manager - GLOBAL

Ensures correct controls are in place for executionKPI and SLA delivery – responsible for program specific rules and policiesChange management ...

SAP / XI CONSULTANT NEEDED, LONDON - 60,000+

To be considered for this opportunity, please contact Lee Smith on 0118 900 6750. Strong inclination to Program Yrs + in program abap (report ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: