Isn’t this what Outlook is on the defense for?

In this article Cory Bohon from TAUW talks about controlling your Mac with email?!? Wow! That’s just… well not good. Its a neat idea, but email is just so insecure. Granted someone would have to know your using these scripts but they can just mail bomb you with a huge subject line containing possible commands and combinations thereby exploiting the “Contains” command. Now I guess you could always check that the email is coming from you, but if they have your email address (which of course they do because their sending you an email) they can impersonate you in the “from” address and circumvent that protection. I wish the author had made the security implications clear, the only warning provided is be careful when test, presumable so you don’t restart your system before saving something important (which makes the mail bomb shutdown painful, notification, no chance to avert it).

Tags: , , ,

Leave a Reply