It has come to my attention that a lot of people are now using the .zip extension to launch attacks.I saw a zip file turn into a cab file through a script that was embededd on an email body(scary stuff).
I need to include the .zip to be blocked by my mail server but the problem is that my sales people get their pricelists as zip files.This poses a threat to my network because i won't know whose launching an attack and whose doing business.I can be happy if Developers can write a mail server software that can allow one to set rules to trust certain domains/ip address to send particular attachments. As it is now i think i will have to block the extension but notify my users that they must get the suppliers to reguest access when they need send the pricelist.
Can't remember the name of it now, but in my last job we use a mail gateway application that was not only able to block certain types of files, but it was also able to examine the contents of compressed files such as .zip. This way even though files were zipped, which was an allowed extension, if zip files contained prohibited files the attachments would still be stripped. I'll see if I can chase up the name if you like?
No worries, I'll see if I can chase it up :-)
Location: Melbourne, Australia
Joined: Sep 2003