1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Users urged to disable Java as new exploit emerges

Discussion in 'Security and Privacy' started by ianamal, 2012/08/28.

  1. 2012/08/28
    ianamal

    ianamal Well-Known Member Thread Starter

    Joined:
    2012/07/03
    Messages:
    92
    Likes Received:
    5
    This is an article in the Register this morning, just how much of a threat it is I do not know. Anyway if your concerned please read the article.

    Users urged to disable Java as new exploit emerges

    All operating systems, browsers vulnerable

    http://www.theregister.co.uk/2012/08/27/disable_java_to_block_exploit/

    Oracle Java 7 Update 6, and possibly other versions, allows remote attackers
    to execute arbitrary code via a crafted applet, as exploited in the wild in
    August 2012 using Gondzz.class and Gondvv.class.

    Another article!

    Unpatched Java exploit spreads like wildfire

    http://nakedsecurity.sophos.com/2012/08/28/unpatched-java-exploit-spreads-like-wildfire/

    More in this article!

    http://www.f-secure.com/weblog/archives/00002414.html
     
    Last edited: 2012/08/28
  2. 2012/08/29
    ianamal

    ianamal Well-Known Member Thread Starter

    Joined:
    2012/07/03
    Messages:
    92
    Likes Received:
    5
    Hi a bit more info on this subject going around at the moment!


    Security experts warn that the damage may only get worse because the exploit code is both reliable and available.


    1. The number of attacks, still low at this point, appear to install the Poison Ivy Remote Access Trojan.


    2. One main problem is there is usually a delay in issuing Java patches. Add that to the quick circulation of the exploit code and you're likely to get many more attackers exploiting the vulnerability.


    3. Members of security company Rapid7 say they've already developed on exploit against Windows 7 and are currently testing it against a number of internet browsers and OS's. They suggest users disable Java until a patch is released.


    4. KrebsonSecurity reporter Brian Krebs suggests the exploit will also roll into the BlackHole exploit kit and also suggests disabling or uninstalling Java for the time being.


    5. The next scheduled Java patch isn't until mid October and Oracle has yet to comment on the reports or a scheduled fix.


    There is a strong possibility this only affects Java 7, so apart from disabling Java
    altogether, a possible fix is to revert back to Java 6 until there's an update fix.

    This Trojan has been around since 2005 so unless it's been modified it should be easy enough to find remove.

    Any thoughts? Regards, Ian.
     

  3. to hide this advert.

  4. 2012/08/30
    JohnB Lifetime Subscription

    JohnB Well-Known Member

    Joined:
    2002/01/07
    Messages:
    856
    Likes Received:
    11
    New Update

    Java 7 Update 7 released this morning. Presumably this will fix the security issue with Update 6.
     
  5. 2012/08/30
    ianamal

    ianamal Well-Known Member Thread Starter

    Joined:
    2012/07/03
    Messages:
    92
    Likes Received:
    5
    Cheers I know already but not going to update yet I rolled back to v 6 yesterday on three machines v6 is patched and secure, well as much as Java's software can be.

    Amazing that Oracle new about the problem for six weeks and did nothing!

    Saw an ruski add for the infection tool today, the yanks and others have been hit with it,

    I suppose in some cases we're lucky some other country gets hit first so we get a bit of warning'

    Another Kuwait company having trouble, think It's the same virus that took out the oil company!

    Anyway thanks for the reply. Regards ,Ian.
     
  6. 2012/08/30
    Davezilla

    Davezilla Well-Known Member

    Joined:
    2008/09/28
    Messages:
    454
    Likes Received:
    7
    I've updated to Java 7 update 7 on my x64 & x86 machines. I need Java for various programs that I run (& need). Java & Adobe flash are probably the Achilles' Heels on Windows.

    I also managed to avoid the Ask Toolbar! :eek:
     

    Attached Files:

  7. 2012/08/30
    Admin.

    Admin. Administrator Administrator Staff

    Joined:
    2001/12/30
    Messages:
    6,687
    Likes Received:
    107

    So far that is presumed. Rapid7 is checking.
     
  8. 2012/08/31
    MrBill

    MrBill SuperGeek WindowsBBS Team Member

    Joined:
    2006/01/14
    Messages:
    4,331
    Likes Received:
    270
    To me that makes you even more vunerable than before you rolled back.
     
  9. 2012/08/31
    SpywareDr

    SpywareDr SuperGeek WindowsBBS Team Member

    Joined:
    2005/12/31
    Messages:
    3,752
    Likes Received:
    338
  10. 2012/08/31
    Steve R Jones

    Steve R Jones SuperGeek Staff

    Joined:
    2001/12/30
    Messages:
    12,317
    Likes Received:
    252
    "Java plugin was not detected. This indicates that either you don't have Java installed or it is disabled in this browser. This browser should be safe from drive-by exploitation via Java. "

    Yea for me:cool: Using good ol FF portable version which nice and stripped down.
     
  11. 2012/08/31
    Bill

    Bill SuperGeek WindowsBBS Team Member

    Joined:
    2002/01/11
    Messages:
    3,371
    Likes Received:
    412
    It is likely they were working frantically to come up with a fix but keeping silent to prevent more and more badguys (and wannabes) from learning about it and exploiting it.

    It is proper security procedure to NEVER announce a weakness until it is fixed.

    Odd that Secunia PSI has yet to yell at me about this - even after forcing a manual scan.

    Before installing this new version, note the Java FAQ page that says to first (their red)
     
  12. 2012/08/31
    MrBill

    MrBill SuperGeek WindowsBBS Team Member

    Joined:
    2006/01/14
    Messages:
    4,331
    Likes Received:
    270
    Secinoa has problems also. I have seen it several times where it failed to notifiy me of updates. I usually see them posted on a message board before it tells me also. It has been telling your for a while now to uninstall older versions before installing the new version.
     
  13. 2012/08/31
    Bill

    Bill SuperGeek WindowsBBS Team Member

    Joined:
    2002/01/11
    Messages:
    3,371
    Likes Received:
    412
    And I think that is sad. I fail to understand how or why the programmers have yet to code the installation program to first detect previous versions, then uninstall them if necessary before installing the newer version. There are many programs that do that already.

    I feel it is lazy programming.
     
  14. 2012/08/31
    MrBill

    MrBill SuperGeek WindowsBBS Team Member

    Joined:
    2006/01/14
    Messages:
    4,331
    Likes Received:
    270
    I have not uninstalled the old ones in probably the last couple of years. It does it automatically. It didn't for years before, but does now. Try it next time. I didn't uninstall the 7.5 and the 7.7 took care of it.
     
  15. 2012/08/31
    Bill

    Bill SuperGeek WindowsBBS Team Member

    Joined:
    2002/01/11
    Messages:
    3,371
    Likes Received:
    412
    Sadly, it is not consistent and you can run JavaRA to see that for yourself as remnants of older versions are typically left behind.
     
  16. 2012/08/31
    MrBill

    MrBill SuperGeek WindowsBBS Team Member

    Joined:
    2006/01/14
    Messages:
    4,331
    Likes Received:
    270
    Just got a notice on 2 of my XP machines for the update. Downloaded with
    no problems.
     
  17. 2012/08/31
    Bill

    Bill SuperGeek WindowsBBS Team Member

    Joined:
    2002/01/11
    Messages:
    3,371
    Likes Received:
    412
    Well I ran JavaRA first, then ran the update - also with no problems.
     
  18. 2012/08/31
    Evan Omo

    Evan Omo Computer Support Technician Staff

    Joined:
    2006/09/10
    Messages:
    7,919
    Likes Received:
    511
    Last edited: 2012/08/31
    lj50 likes this.
  19. 2012/08/31
    Davezilla

    Davezilla Well-Known Member

    Joined:
    2008/09/28
    Messages:
    454
    Likes Received:
    7
    "Java is insecure & awful" ~ You've got no argument from me there! ;)

    I have updated Java 7 u7, as I stated earlier. However, on my 32 bit Vista notebook I have Java FX2.1.1, which must have installed when I upgraded Java 6 to Java 7. When I have tried to update this to FX2.2 I get an unauthorised access warning (see jpeg). I have 'agreed' to the OTN licence term but I still seem to get the page.

    Do I need Java FX2.2 (or 2.1.1 for that matter) at all? I'm not really sure what it actually is or does.
     

    Attached Files:

  20. 2012/08/31
    Evan Omo

    Evan Omo Computer Support Technician Staff

    Joined:
    2006/09/10
    Messages:
    7,919
    Likes Received:
    511
    No I don't believe you need it installed. I've never heard of JavaFX before but it sounds like its aimed at Java developers and is not needed on consumers computers.

     
  21. 2012/09/01
    Arie

    Arie Administrator Administrator Staff

    Joined:
    2001/12/27
    Messages:
    15,174
    Likes Received:
    412
    No, Evan gave you the description of the program which is aimed at developers. I have no idea why the idiots at Oracle decided to include it in the standard Java install.

    From the 1st day it started showing up (I believe with ver 7) I have uninstalled it.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.