Click here to Skip to main content
15,912,329 members

The Insider News

   

The Insider News is for breaking IT and Software development news. Post your news, your alerts and your inside scoops. This is an IT news-only forum - all off-topic, non-news posts will be removed. If you wish to ask a programming question please post it here.

Get The Daily Insider direct to your mailbox every day. Subscribe now!

 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Ath125-Sep-12 21:32
Ath125-Sep-12 21:32 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Mike Winiberg25-Sep-12 22:34
professionalMike Winiberg25-Sep-12 22:34 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
destynova25-Sep-12 23:38
destynova25-Sep-12 23:38 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Pete O'Hanlon26-Sep-12 1:53
mvePete O'Hanlon26-Sep-12 1:53 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Chad3F3-Oct-12 20:43
Chad3F3-Oct-12 20:43 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
rb5526-Sep-12 1:27
rb5526-Sep-12 1:27 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Richard Deeming26-Sep-12 6:46
mveRichard Deeming26-Sep-12 6:46 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
rb5526-Sep-12 8:02
rb5526-Sep-12 8:02 
Maybe not, this is what happens when you read far too many of these last week. Smile | :) The better story[^] detailing the real issue behind the partial story in Forbes. So no, it's actually not a Java Exploit, but a browser exploit.

With all that said, if I'm running as a non-privileged user and this exploit gives the attacker full control of my machine (windows most likely) then there's bigger issues afoot than a mere exploit in the JRE. This would imply an OS problem. Add to this that he references the Flashback exploit of several months ago as being a similar hole, note that for macs, at least, this "exploit" merely offered up to the user a request to install a trojan, nothing more, nothing less, and it required user intervention. From what I can tell, the windows version gives direct access to the machine, bypassing the user and security entirely.

So perhaps if people ditched windows, they'd be safer? After all, that's no more sensationalist a line than "time to ditch Java".
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Richard Deeming26-Sep-12 8:13
mveRichard Deeming26-Sep-12 8:13 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
rb5526-Sep-12 11:53
rb5526-Sep-12 11:53 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Richard Deeming26-Sep-12 12:00
mveRichard Deeming26-Sep-12 12:00 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Jules H29-Sep-12 20:43
Jules H29-Sep-12 20:43 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Richard Deeming1-Oct-12 1:26
mveRichard Deeming1-Oct-12 1:26 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
RafagaX26-Sep-12 5:38
professionalRafagaX26-Sep-12 5:38 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Fabio Franco26-Sep-12 10:17
professionalFabio Franco26-Sep-12 10:17 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Ravi Bhavnani26-Sep-12 10:26
professionalRavi Bhavnani26-Sep-12 10:26 
GeneralRe: Another Critical Security Flaw In Java Appears Before Oracle Has Even Resolved The Last One Pin
Fabio Franco26-Sep-12 10:28
professionalFabio Franco26-Sep-12 10:28 
NewsMo’ Pixels Mo’ Problems Pin
Terrence Dorsey25-Sep-12 4:38
sitebuilderTerrence Dorsey25-Sep-12 4:38 
NewsForce.com is the next Visual Basic Pin
Terrence Dorsey25-Sep-12 4:38
sitebuilderTerrence Dorsey25-Sep-12 4:38 
GeneralRe: Force.com is the next Visual Basic Pin
Dan Neely26-Sep-12 2:35
Dan Neely26-Sep-12 2:35 
GeneralRe: Force.com is the next Visual Basic Pin
Pete O'Hanlon26-Sep-12 2:41
mvePete O'Hanlon26-Sep-12 2:41 
GeneralRe: Force.com is the next Visual Basic Pin
Dan Neely26-Sep-12 7:46
Dan Neely26-Sep-12 7:46 
GeneralRe: Force.com is the next Visual Basic Pin
Pete O'Hanlon26-Sep-12 7:48
mvePete O'Hanlon26-Sep-12 7:48 
NewsGlass Works: How Corning Created the Ultrathin, Ultrastrong Material of the Future Pin
Terrence Dorsey25-Sep-12 4:37
sitebuilderTerrence Dorsey25-Sep-12 4:37 
NewsIslands of C++ Pin
Terrence Dorsey24-Sep-12 11:05
sitebuilderTerrence Dorsey24-Sep-12 11:05 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.