[dba-Tech] new email attack vector

Stuart McLachlan stuart at lexacorp.com.pg
Fri Aug 25 01:16:06 CDT 2017


Correction!   Your Zimbra DISPLAYS the plain text version of an  email by default - if it is a 
multipart/alternative message with both plain and HTML versions. It doesn't "send" anything.

 
On 24 Aug 2017 at 23:04, Jim Lawrence wrote:

> Hmmm... sometimes it might be nice to be able to modify an email after
> it was sent. ;-)
> 
> Having an automated plain text email setting is a must in this day and
> age. The email client, Zimbra, I am currently using, sends all email
> in text first and then there is a setting that will allow me to switch
> the message to HTML. If I see 200 lines of Javascript code revealed or
> iframes, in the bucket it goes. ;-)
> 
> Jim
> 



More information about the dba-Tech mailing list