Disable Java? think about it.


Discussion Topic

Return to Forum List
Post a Reply
Messages 41 - 44 of total 44 in this topic << First  |  < Previous  |  Show All  |  Next >  |  Last >>

Ice climber
chingadero de chula vista
Topic Author's Reply - Feb 5, 2013 - 11:43am PT
The link is here

Taxonomy of Conflicts in Network Security Policiesby H Hamed - 2006 -
Cited by 34 - Related articles Policy conflicts may cause serious security
breaches and network .... security policies. Figure 3 shows the
organization of our taxonomy of these conflicts. ...



Social climber
Portland, Oregon
Feb 7, 2013 - 08:09pm PT
Your regularly scheduled Flash exploit for Feb:


Affects Windows and Mac. It's out there in the wild.

Adobe has released security updates for Adobe Flash Player 11.5.502.146 and earlier versions for Windows and Macintosh, Adobe Flash Player and earlier versions for Linux, Adobe Flash Player and earlier versions for Android 4.x, and Adobe Flash Player and earlier versions for Android 3.x and 2.x. These updates address vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system.

Adobe is aware of reports that CVE-2013-0633 is being exploited in the wild in targeted attacks designed to trick the user into opening a Microsoft Word document delivered as an email attachment which contains malicious Flash (SWF) content. The exploit for CVE-2013-0633 targets the ActiveX version of Flash Player on Windows.

Adobe advisory here:


Social climber
Portland, Oregon
Mar 1, 2013 - 01:03pm PT
And yet another zero day Java exploit is in the wild.

Hackers are exploiting a previously unknown and currently unpatched vulnerability in the latest version of Java to surreptitiously infect targets with malware, security researchers said Thursday night.

The critical vulnerability is being exploited to install a remote-access trojan dubbed McRat, researchers from security firm FireEye warned. The attacks work against Java versions 1.6 Update 41 and 1.7 Update 15, which are the latest available releases of the widely used software. The attack is triggered when people with a vulnerable version of the Java browser plugin visit a website that has been booby-trapped with attack code. FireEye researchers Darien Kindlund and Yichong Lin said the exploit is being used against "multiple customers" and that they have "observed successful exploitation."

Disable Java in your browser if you haven't already.

Ice climber
Brujo de La Playa
Topic Author's Reply - Jan 21, 2014 - 10:05am PT
No action here for some time. Disabling Java does cause certain applications to complain, e.g. Youtube.

What is anyone thinking on this currently?

Messages 41 - 44 of total 44 in this topic << First  |  < Previous  |  Show All  |  Next >  |  Last >>
Return to Forum List
Post a Reply
Our Guidebooks
Check 'em out!
SuperTopo Guidebooks

Try a free sample topo!

SuperTopo on the Web

Review Categories
Recent Route Beta
Recent Gear Reviews