Subj : Ddge 3.99/SR9/SR16 released and avai
To   : Nicholas Boel
From : mark lewis
Date : Fri Dec 15 2017 08:48 pm


On 2017 Dec 14 15:10:24, you wrote to me:

NB>>> And an honest answer in question form: How do you know every
NB>>> intermediate point is clean and clear of virus injection of any
NB>>> kind?

ml>> really? when is the last time you've seen a virus inject itself into
ml>> binaries inside a zip file? are you in the habit of unzipping the
ml>> files where a virus can find the binaries and infest them? think
ml>> about it...

NB> Quite a few BBS softwares have an upload checker, which extracts a zip
NB> file and injects whatever the sysop defines into it. Think about it.

i have one here... is used only when BBS users upload... it only ""injects""
maybe an NFO file and/or possibly a zip comment... it cannot execute a binary
injection mechanism... however, yes, if the system is infested, it is possible
that one might be... but ummmm... i run an ""antique OS that you wouldn't run""
and guess what? there's no infesting critters that can work on it so, hummm...

ml>> and if you miss then you are *that* one... especially if your chosen
ml>> tool(s) don't detect something nefarious... the real ugly is that
ml>> because you made the effort and missed, it is your responsibility...
ml>> this is on the same lines as those ""legal notices"" posted on some
ml>> BBSes where they say they will read every message posted looking for
ml>> illegal activities... that puts them in legal hot water if they miss
ml>> something... better to not do it at all and be safe... besides,
ml>> there's no way to find all possible hidden messages within posts...
ml>> that's a chase game just like virus scanning is a chase game...
ml>> you'll never know you had it until it bites you...

NB> I knew you would veer off on a tangent with this. I'll check the files
NB> on my own system, with or without your say-so. Thanks though!

no veering... no tangent... certainly not trying to influence you and your
operation... just pointing out another side of the fence ;)

)\/(ark

Always Mount a Scratch Monkey
Do you manage your own servers? If you are not running an IDS/IPS yer doin' it
wrong...
... Men want to marry virgins cause they can't stand criticism.
---
* Origin:  (1:3634/12.73)