Another vulnerability discovered in Java

If you believed (or hoped) as security issues but Java were resolved with the last update, launched a week ago ... do not lose hope for the next update. Last days a discovered a the new vulnerability affecting All Java 7 versions, including its most recent update.

Last vulnerability was discovered in Reflection API and is present both in plugin-ul JRE, JRE server as well as in JDK. Fortunately the ability of the new exploit to take control of systems depends on CAT acces is allowed by users.

Java_security-hole

The new flaw was verified to affect all versions of Java SE 7 (including the recently released 1.7.0_21-b11). It can be used to achieve a complete Java security sandbox bypass on a target system. Successful exploitation in a web browser scenario requires proper user interaction (a user needs to accept the risk of executing a potentially malicious Java application when a security warning window is displayed).

Unfortunately Java continues to be exploited by cyber criminals due to the fact that it is installed on 1 in 2 computers (maybe even at a higher rate), thus occupying a leading place among the attractive targets for hackers. And Oracle He has managed to create a pretty bad reputation lately, due to security problems and vulnerabilities that appear, despite Security updates Quite often.

If you get used to using Java (for different installed applications, or for a number of Sites that you are used to access and require Java for operation), take great care at How do you use this program (it is recommended to use a browser Separately to access the websites using Java, and deactivation of Java plugins for the other browsers; Also, don't hurt to have an installed one antivirus good on the system). But if you do not need Java or you can miss it, it is recommended uninstalling it from the system (Control Panel > Uninstall a program).

STEALTH SETTINGS – Another vulnerability found in Java

Passionate about technology, I write with pleasure on stealthsetts.com starting with 2006. I have a rich experience in operating systems: Macos, Windows and Linux, but also in programming languages ​​and blogging platforms (WordPress) and for online stores (WooCommerce, Magento, Presashop).

Home Your source of IT tutorials, useful tips and news. Another vulnerability discovered in Java
Leave a Comment