原來用 email client 就能開 mhtml 檔案了,把副檔名改成 eml 即可,像是用 thunderbird 。
某些網頁備份工具會用這個格式,但瀏覽器大多不支援了。

也試了 avfs ,但他只有支援 mailfs ,好像是 mbox 格式的 driver ,而且也只解析到一封封 email 層級,不能解析 email 裡的 multi-part 。

#mhtml #avfs

@evgandr I was wondering why you didn't just use the built-in support for #MHTML (https://en.wikipedia.org/wiki/MHTML), but apparently Firefox never implemented it. :(
MHTML - Wikipedia

In May 2024, Trend Micro's Zero Day Initiative (ZDI) discovered a new vulnerability, CVE-2024-38112, being exploited by the Advanced Persistent Threat (APT) group known as Void Banshee. This vulnerability allowed attackers to execute malicious code on Windows systems by leveraging the MHTML protocol handler and x-usc directives through internet shortcut (.URL) files. Despite Internet Explorer being disabled on most modern Windows systems, Void Banshee found a way to use it to run malicious files, particularly targeting users with the Atlantida info-stealer malware. This malware is designed to steal sensitive data such as passwords and cookies from various applications.

Void Banshee distributed their malicious files disguised as PDFs within zip archives, tricking victims into thinking they were legitimate documents. These files were spread across cloud-sharing platforms, Discord servers, and online libraries, focusing their attacks primarily in North America, Europe, and Southeast Asia. The discovery of CVE-2024-38112 underscores the ongoing risk posed by outdated Windows features, even after official support has ended, serving as a reminder of the importance of keeping software up to date and vigilant about potential threats.

To mitigate this vulnerability, Microsoft released patches as part of the July 2024 Patch Tuesday, unregistering the MHTML handler from Internet Explorer to prevent future exploits.

https://www.trendmicro.com/en_us/research/24/g/CVE-2024-38112-void-banshee.html

#cybersecurity #windows #internetexplorer #vulnerability #apt #voidbanshee #mhtml #protocol #url #malware #atlantida #pdf #zip #discord #servers #cve #trendmicro #zdi #patchtuesday

CVE-2024-38112: Void Banshee Targets Windows Users Through Zombie Internet Explorer in Zero-Day Attacks

Trend Micro
Archivieren von Webseiten – ein Überblick für Endnutzer | Ingram Braun

Ein Überblick darüber, wie man Webseiten, deren Inhalt man längerfristig aufheben möchte, speichern kann. Sowohl Privatkopien als auch Webarchive werden berücksichtigt.

Ingram Braun