The Register® — Biting the hand that feeds IT

Eudora e-mail hole discovered

Clever exploit hides the attachment

Free whitepaper – PowerEdge M1000e, M600 and M605 spec sheet

A malicious attachment in Eudora mail which could allow a miscreant to execute code on a victim's machine can be completely concealed and activated by clicking on a hyperlink, Peacefire.org Webmaster Bennett Haselton has discovered. When a recipient clicks the link, the code is executed. The exploit conceals the attachment and bypasses the warning that an attached file is about to be executed. In this case, the .exe extension is changed to .lnk, which Eudora does not by default warn about. To make the exploit more effective, the command to execute it can be embedded in a hyperlink, which can also be devised to prevent Eudora from indicating that an attachment is present. Qualcomm recommends that users edit their Eudora.ini file and insert the following: WarnLaunchExtensions=exe|com|bat|cmd|pif|htm|do|xl|reg|lnk| Full details are available on the Peacefire Web site here. ®

Free whitepaper – Blade learning lab and technical community

Don’t Miss

DustbinDirty, dirty PCs: The X-rated picture guide

Ventblockers Horror beyond human imagination

SC09Top 500 supers - rise of the Linux quad-cores

SC09 Jaguar munches Roadrunner

Ubuntu teaser Early adopters bloodied by Ubuntu's Karmic Koala

Smooth Windows upgrade it ain't

Sign up, sign up for The Register IT security newsletter

Narrowcasting for the email classes