[MlMt] Dowload of fonts

Patrik Fältström paf at frobbit.se
Sun Nov 12 03:27:11 EST 2017


On 11 Nov 2017, at 14:09, Benny Kjær Nielsen wrote:

> I can reproduce the issue and I don't think I can (easily) do anything about it. It seems to be something affecting various applications, e.g., see [here](https://discussions.apple.com/message/31539108#31539108).

Aha!

> For the record, I selected “Skip” and I could still read the message.

Good to know.

> It is probably triggered by this: `font-family:標楷體, dfkai-sb;`. I have no idea what the purpose of this statement is since the message itself is written in Swedish and does not seem to require any special fonts...

I think the goal is to see whether people display the message or not (as you can not track using images as email clients do not load external content). On top of that it is an interesting attack vector given what is downloaded might not be a correct font.

   paf
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 256 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freron.com/pipermail/mailmate/attachments/20171112/6512e97b/attachment.sig>


More information about the mailmate mailing list