Providing Free and Editor Tested Downloads

< HOME | MAC | GEEK - WEAR | SHOPPING | SUPPORT FORUM | TOP DOWNLOADS | >
MajorGeeks.com - The Few, The Proud, The Geeks.

Admin Tools
All In One
Android
Anti-Spyware
Anti-Virus
Appearance
Back Up
Benchmarking
Bios
Browsers
CD\DVD\Blu-Ray
Covert Ops
Data Recovery
Diagnostics
Drive Cleaners
Drive Utilities
Driver Tools
Drivers
Ergonomics
Firewalls
Game Tweaks
Graphics
Input Device
Internet Tools
Mail Utilities
Memory
Messaging
Microsoft
Misc
Monitoring
Multimedia
Networking
Office Tools
ProcessManagement
Processor
Registry
Security
System Info
Toys
Video
Macintosh
Games
News Archive
- Off Base
- Way Off Base


· The Bat! Home Edition 5.4.0
· Photostage Slideshow Software 2.21
· Jajuk 1.10.6
· System Monitor II 17.3
· Ghostery 2.9.5
· LibreOffice Productivity Suite 4.1.0 Beta 1
· Google Chrome Beta 28.0.1500.20
· Hitman Pro 3.7.5.199
· Foxit Reader 6.0.3.0524
· BB FlashBack Express 4.1.6.2745

· New? Start Here
· Top Freeware Picks
· Malware Removal
· Compatibility Database
· Geektionary
· Geek Shopping
· Free Magazines
· Useful Links
· Top Freeware Picks
· Folding@Home
· About Us
· Copyright
· Privacy
· Terms Of Service
· Uninstall

There are currently 3439 user(s) online:
Google, Live Search, MSN, Yahoo

YouTube

FaceBook

Twitter

RSS / XML Feed

Pintrest



Follow @majorgeeks
· Google · Yahoo · MSN


1. K-Lite Codec Pack Update
2. IObit SmartDefrag
3. Malwarebytes Anti-Malware
4. Win7codecs
5. IObit Malware Fighter
6. JetClean
7. x64 Components
8. SpywareBlaster
9. Windows 8 Codecs
10. Advanced SystemCare Free 6.2.0.254 (0424)
More >>

The plane! The plane! Fantasy Island airplane used to smuggle drugs after show finished (Video)

7-Data-Recovery 3 Day Giveaway - $29.95 Value! (LAST day!)

What's The Best Browser to Protect You against Malware?

Friday Photo Bombs!

Female fan who flipped off Noah in photo identified as Filomena Tobias

Majorgeeks updates website to new CMS and design – didn’t break EVERYTHING

First time setup and installation of an SSD drive

Friday Photo Bombs!

NASA dumping Windows for Linux

World Of Warcraft loses 1.3 million subscribers in 3 months





MajorGeeks.com » News » August 2012 » New Java Zero Day Being Used in Targeted Attacks

New Java Zero Day Being Used in Targeted Attacks


Posted on: 08/27/2012 05:04 PM [ Comments ]


There is a newly discovered zero day vulnerability in Java 7 that is being used in some targeted attacks right now. The vulnerability works against Internet Explorer and Firefox and researchers say that attackers are exploiting in the wild and installing a version of the Poison Ivy RAT on compromised systems.

The targeted attacks that are being launched right now are using an exploit from a site hosted in China, which is still up and running. Once the exploit fires, the attack will install a dropper on the compromised PC called Dropper.MsPMs, which will then call out to another IP address on the same domain as the one serving the exploit.

"The dropper executable is located on the same server: http://ok.XXX4.net/meeting/hi.exe. Dropper.MsPMs further talks to its own CnC domain hello.icon.pk which is currently resolving to an IP address 223.25.233.244 located in Singapore," Atif Mushtaq at FireEye wrote in an analysis of the attack.

The vulnerability is present in Java 7 and doesn't affect earlier versions, researchers said. There is proof-of-concept exploit code circulating for the bug, and the folks at Metasploit also have developed a module that exploits the flaw. They said that their exploit works against a fully patched Windows 7 machine with Java 7 update 6 running. Their exploit also works against IE and Firefox on Windows Vista and XP and also against Chrome on Windows XP and Firefox on Ubuntu Linux 10.04.

Researchers at DeepEnd Research who looked at the vulnerability said that there is little indication of a successful exploit of this vulnerability.

"It does not crash browsers, the landing page looks like a blank page, sometimes one may see a flash of a rotating Java logo and the word 'Loading'," Andre' M. DiMino and Mila Parkour wrote.

The massive installed base of Java makes this vulnerability a particularly serious one, as any Java zero day is, but the other factor in the mix is that Oracle uses a scheduled quarterly patch cycle, and the next one isn't until mid-October. Unless the company issues an emergency patch, which is does rarely, the vulnerability will be fair game for attackers for nearly two months.

There is a third-party patch available for the vulnerability, available by request only from the folks at DeepEnd. In order to get the patch, organizations need to explain their need for it.

"This is not an official patch and had limited testing. In general, it is best to disable Java in your browser or use Chrome.
If you are in the environment where you must have Java with Internet Explorer, Firefox and Opera, email us at admin deependresearch.org from your company address with a brief explanation of the planned use and we will send you the download link," DeepEnd said in its post.








Like it? Share it....




Comments
comments powered by Disqus

« Warning on critical Java hole · New Java Zero Day Being Used in Targeted Attacks · Go-cart driver leads police on chase »

MajorGeeks.com » News » August 2012 » New Java Zero Day Being Used in Targeted Attacks
© 2000-2013 MajorGeeks.com
Powered by Contentteller® Business Edition