19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Threats Catalogue Deliberate Acts Remarks<br />

____________________________________________________________________ .........................................<br />

T 4.37 Lack of time authenticity in E-mail<br />

An E-mail can contain various information about time, such as the time a<br />

message was sent, the transmission time or the time it was received. <strong>The</strong>se are<br />

not tamperproof, though. For example, the time a message was sent can be<br />

falsified by adjusting the system time on the computer from which the<br />

message was sent. While an E-mail is on it's way from the sender to the<br />

recipient, the mail header, in particular the entries for time, date and address of<br />

the mail server, can be falsified at will. A further attack to be mentioned is the<br />

systematic and purposeful corruption and diversion of SMTP packets.<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!