4 ms·
I wouldn't be worried about encryption. I'd be worried about any of the hundreds of widely-known vulnerabilities that were patched between 2002 and today. http
by TakeBlaster16 4y ago
I wouldn't be worried about encryption. I'd be worried about any of the hundreds of widely-known vulnerabilities that were patched between 2002 and today.
https://www.cvedetails.com/product/3678/Mozilla-Thunderbird.html?vendor_id=452 https://www.cvedetails.com/product/3678/Mozilla-Thunderbird....
https://www.cvedetails.com/product/739/Microsoft-Windows-Xp.html?vendor_id=26 https://www.cvedetails.com/product/739/Microsoft-Windows-Xp....
- badsectoracula 4y agoYes but there is a difference between possibility and probability: it is technically possible to hit these vulnerabilities, but the chances are practically zero, especially in the context here where someone might try it once like mentioned in the article. It isn't like there are many malware authors out there trying to infect people running 20 year old software (outside of targeted attacks). I think you are more likely to be affected by a vulnerability bug in some random modern macOS application with its own autoupdater than a vulnerability in a 20 year old Windows program. Remember that these issues existed when that software was actually mainstream and yet the overwhelming majority of people wasn't affected by them during the peak of their popularity.
- TakeBlaster16 4y agoThe difference is back then, the vulnerabilities weren't even discovered yet. Today, metasploit scanners are running 24/7 scanning the entire IPv4 address space for thousands of vulnerabilities at a time - including automated chaining of exploits through e.g. routers with misconfigured UPnP. You don't need to be targeted. As mentioned above, you can be exploited with no user action merely by plugging in an ethernet cable. But then again, I'm not your mom. If you really want to do this I can't stop you. Go ahead.
- deleted 4y ago[deleted]