RE: IE headers w patch level

From: Omar Koudsi (omark@jeeran.com)
Date: 12/25/01


From: "Omar Koudsi" <omark@jeeran.com>
To: "'Stephen Friedl'" <friedl@mtndew.com>, <focus-ms@securityfocus.com>
Date: Tue, 25 Dec 2001 13:01:07 +0200


Steve Friedl said:

>If I were running an IT department, I'd sure love to know which of my
perhaps hundreds of internal users had not received which patches

This is the kind of response we would probably here back from the PR
department at Microsoft :)

Just like this information would be available to the IT department in
the organization, it will probably be also available for all the
malicious websites out there. Were they would be able to customize
attacks against your browser according to the patch level that you are
at.

-----------
Omar Koudsi
IT Architect
Network Security Center
Special Systems Company
http://security.sscjo.com
omark@sscjo.com
Tel: (9626) 5664221
Fax: (9626) 5681557