emacs-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Emacs/Mutt and Efail or OpenPGP is safer than S/MIME?


From: Eli Zaretskii
Subject: Re: Emacs/Mutt and Efail or OpenPGP is safer than S/MIME?
Date: Wed, 16 May 2018 18:56:26 +0300

> From: Richard Stallman <address@hidden>
> Date: Tue, 15 May 2018 22:52:38 -0400
> Cc: address@hidden
> 
> If you allow a mail user agent to render HTML for you, you expose
> yourself to various kinds of surveillance and swindles.

I don't think HTML rendering per se is the problem.  The problem is
when the MUA automatically fetches stuff referenced in the email as a
URL pointing to some server.

As long as the MUA renders HTML that is only contained in the mail
message, there's no leak of private information outside of the MUA.
At least that's my understanding of the paper which was cited here.

E.g., Rmail renders HTML messages, but doesn't access external URL
references, it creates a button out of each reference that the user
needs to activate to cause Emacs to fetch the URL.



reply via email to

[Prev in Thread] Current Thread [Next in Thread]