Security researchers uncover new Java vulnerability

11 Jan 2013

1

Security researchers say cybercriminals are using an exploit for a previously unknown and currently unpatched vulnerability in Java to infect computers with malware.

This was reported by an independent malware researcher who uses the online moniker Kafeine. He wrote in his blog yesterday about the existence of the exploit "in the wild", which  was being actively used in attacks.

Such exploits are being used by attackers to silently install malware on the computers of users who visited compromised websites, in so called drive-by download attacks.

The researcher, who says this could be mayhem and he better make some noise about is sharing samples of the exploit only with security companies.

A senior e-threat analyst, Bogdan Botezatu at antivirus vendor Bitdefender wrote in an email, that they could confirm this was a new vulnerability.

"We reproduced the exploitation mechanism on Java 1.7 Update 9 and Update 10. Other versions may be vulnerable as well, we're currently analyzing whether other older updates are vulnerable."

Business History Videos

History of hovercraft Part 3...

Today I shall talk a bit more about the military plans for ...

By Kiron Kasbekar | Presenter: Kiron Kasbekar

History of hovercraft Part 2...

In this episode of our history of hovercraft, we shall exam...

By Kiron Kasbekar | Presenter: Kiron Kasbekar

History of Hovercraft Part 1...

If you’ve been a James Bond movie fan, you may recall seein...

By Kiron Kasbekar | Presenter: Kiron Kasbekar

History of Trams in India | ...

The video I am presenting to you is based on a script writt...

By Aniket Gupta | Presenter: Sheetal Gaikwad

view more