Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
CatSalad🐈🥗 (D.Burch) :blobcatrainbow:
@catsalad@infosec.exchange  ·  activity timestamp 4 days ago

Is there a limit to the size of an email signature? I have The Bee Movie script and a need to punish people that email me.

  • Copy link
  • Flag this post
  • Block
Howard Cohen
@hoco@sfba.social replied  ·  activity timestamp 4 days ago

@catsalad Two words: giant font.

  • Copy link
  • Flag this comment
  • Block
Leeloo
@leeloo@chaosfem.tw replied  ·  activity timestamp 4 days ago

@catsalad
An email signature is just text added to the end of the mail, so the only technical limitation would be the total email size limit.

  • Copy link
  • Flag this comment
  • Block
Lockpick Extreme
@LockEx@ioc.exchange replied  ·  activity timestamp 4 days ago

@catsalad The EICAR test file is only 68 bytes
https://www.eicar.org/download-anti-malware-testfile/

  • Copy link
  • Flag this comment
  • Block
CatSalad🐈🥗 (D.Burch) :blobcatrainbow:
@catsalad@infosec.exchange replied  ·  activity timestamp 4 days ago

@LockEx I was definitely thinking about EICAR as a header! Lol

  • Copy link
  • Flag this comment
  • Block
ℵ₀ 🏳️‍⚧️🏴‍☠️
@null_aleph@mastodon.social replied  ·  activity timestamp 4 days ago

@catsalad @LockEx could additionally set a default attachment/embed... Containing that string and other related test strings. Might not increase the false positive rate much but... Who knows?

  • Copy link
  • Flag this comment
  • Block
Jernej Simončič �
@jernej__s@infosec.exchange replied  ·  activity timestamp 4 days ago

@catsalad @LockEx Add Invoke-Mimikatz, too :)

  • Copy link
  • Flag this comment
  • Block
Lockpick Extreme
@LockEx@ioc.exchange replied  ·  activity timestamp 4 days ago

@catsalad you may or may not find a tiny EICAR QR code on the packaging of one of our products.

  • Copy link
  • Flag this comment
  • Block
CatSalad🐈🥗 (D.Burch) :blobcatrainbow:
@catsalad@infosec.exchange replied  ·  activity timestamp 4 days ago

@LockEx Really?!! Oh that's amazing :3

  • Copy link
  • Flag this comment
  • Block
Andreas Albrecht
@Datterich@darmstadt.social replied  ·  activity timestamp 4 days ago

@catsalad @LockEx

That's definitely a file you could also include with a JPEG MIME header instead of a logo in your email signature.

  • Copy link
  • Flag this comment
  • Block
César Pose
@cesarpose@infosec.exchange replied  ·  activity timestamp 4 days ago

@catsalad Mine used to be three letters and several payloads.

  • Copy link
  • Flag this comment
  • Block
doboprobodyne
@doboprobodyne@mathstodon.xyz replied  ·  activity timestamp 4 days ago

@catsalad
Thaaaatts why people have twatty email signatures! Oh my days. It all makes sense now! It works too, I actively don't want to email them. I stand educated. Thank you <3

#email #systemsArchitecture #cybernetics #feedbackLoops

  • Copy link
  • Flag this comment
  • Block
seism0saurus
@seism0saurus@infosec.exchange replied  ·  activity timestamp 4 days ago

@catsalad

You could encode the movie file itself with base64 and add that to the signature.
But maybe the receiving mail server wouldn't handle the size.
I would like to hear your results.

  • Copy link
  • Flag this comment
  • Block
avatastic :enby_rebel:
@avatastic@avatastic.uk replied  ·  activity timestamp 4 days ago

@catsalad hide it in the headers.

  • Copy link
  • Flag this comment
  • Block
kwayk42
@kwayk42@sechtor.social replied  ·  activity timestamp 4 days ago

@catsalad only physical limits on the email size. What might be worth it is to build a malware script into an image you use for the signature, so every time they click their mouse it picks a random line from the script and displays it on top of whatever they're doing

  • Copy link
  • Flag this comment
  • Block
Paul_IPv6
@paul_ipv6@infosec.exchange replied  ·  activity timestamp 4 days ago

@catsalad

perhaps a multi-media email reply with the theme music from frozen on loop?

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0-rc.3.21 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login