About Us | Contact Us
View Cart

The User Level: Just Say “No” to HTML E-mail

By Vigilize | Thursday, August 12, 2010 - Leave a Comment

As an employee, you must be forewarned about the use of HTML e-mail. There are several reasons why HTML e-mail is a bad practice. These include that HTML wastes bandwidth and computing resources, doesn’t always display properly, and can be mistakenly flagged as spam. But, the number one reason to avoid HTML e-mail is the security threat it poses to systems and data.

Viruses, through the use of HTML formatting, is a great concern. Popular clients (e.g. Outlook) that display HTML e-mail have essentially embedded a web browser into the software that is capable of running scripts and downloading images from external sites just by viewing a message. As vulnerabilities and bugs are discovered in these clients, exploits have been used to spread viruses and malware without using attachments. The e-mail simply has to be viewed.

There are also privacy concerns with HTML formatted e-mail. Spammers and advertisers can confirm your address, gather statistics, and identify someone by coding messages to open specific images on a remote server or through the use of cookies. In addition, this is a very good way to increase the amount of spam you receive.

It’s a viscous cycle! One that you can avoid by choosing a different default format (e.g. plain text) in your e-mail client!


same_strip_012513

Latest News
    The One Test… …Is there a Test that Covers 9/11’s of the Battle? Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Twenty years ago two geek-friends and I debated the following question:  “Is there an Audit Test that covers 9/11’s of the battle?” This […]
    PRESS RELEASE – FOR IMMEDIATE RELEASE BUSINESS NEWS NEW EMPLOYEE FOR INFOTEX infotex has just hired Tanvee Dhir, to be a new Data Security Analyst. “Tanvee is an outstanding addition to the team, bringing a new skillset we are eager to utilize.” says Chad Smith, NOC Manager of infotex. “I am really excited to be […]
    While we’re not a news service, we often use current events to comment on trends and our services. This blog is intended to get people thinking about topics and trends in Technology Risk Management, through our article reviews, as well as through original blog articles about current events and our MSSP services (such as our […]
    Seven Trends . . . that small bank Information Security Officers face in 2021 Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Welcome to the Magnificent Seven, my annual predictive article about the seven trends in technology that will impact the Information Security Officers of […]
    Top Seven Risks . . . that small bank Information Security Officers face in 2021 Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Once again, I compile this list in preparation for updating our normal board of directors awareness training PowerPoints and movies and such. […]