Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - Geek it 'till it MHz.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews



IObit Black Friday Sale

spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Macrium Reflect FREE Edition
3. Smart Defrag
4. MusicBee
5. Microsoft Visual C++ 2015-2022 Redistributable Package
6. Sergei Strelec's WinPE
7. Visual C++ Redistributable Runtimes AIO Repack
8. K-Lite Mega Codec Pack
9. Format Factory
10. ImgBurn
More >>

top reads

Star How To Remove the Windows 11 Updated Start Menu

Star How To Disable Drag Tray

Star How To Permanently Delete Files Without Sending Them to the Recycle Bin in Windows 11

Star How To Repair Install Windows 11, and Keep All Your Files and Apps

Star How To Turn Off Folder Backup Syncing on OneDrive

Star AI Actions - What Are They and How To Enable/Disable Them

Star Microsoft Is Ending 3rd Party Printer Driver Support in 2026: How to Protect Old Printer Drivers

Star How To Stop Edge and Chrome Default Browser Prompts

Star How To Configure Allowed Apps for Controlled Folder Access

Star Pause or Disable Automatic App Updates in Microsoft Store


MajorGeeks.Com » News » August 2012 » Detecting and Removing Vulnerable Java Versions - continued

Detecting and Removing Vulnerable Java Versions - continued


Contributed by: Email on 08/28/2012 02:48 PM [ comments Comments ]


As attacks on the new Java zero-day vulnerability continue and researchers look for ways to mitigate the flaw, they are encouraging users to disable Java in their browsers. There is now a site that users can visit that will detect whether their browser is running a vulnerable version of Java.

Security vendor Rapid 7 has set up a site that will detect the version of Java that is running in the user's browser and tell her whether it contains the newly discovered Java vulnerability. The flaw is in Java 7 and researchers have found ongoing attacks in the wild targeting the vulnerability. The attacks are in the form of drive-by downloads right now, with successful exploitation leading to the installation of the Poison Ivy remote-access tool on compromised machines. Poison Ivy is a well-known RAT and has been used in a number of attacks in recent years.

Java has become a major target for attackers in the last few years, as it offers a number of things that appeal to them: wide deployment, a long update cycle and lots of readily available bugs. Java vulnerabilities often are included in exploit packs and tend to be used in the kind of drive-by download attacks that often ensnare unsuspecting users.

Oracle has not released any statements on the new Java flaw, but the next scheduled patch release is not until mid-October. Oracle does not release emergency patches often, so the best course of action right now is to disable Java in any browser that you use regularly.

To disable Java in Google Chrome:

Go to the wrench in the upper right corner of the browser window
Click on settings and search for Java in the search box
Click on the highlighted Content Settings button and then scroll down to the Plug-ins entry
Select Disable Individual Plugins and then click on Disable Java

To disable Java in Mozilla Firefox:

Click on the Firefox tab in the top left corner and then click Add-ons
Select Plug-ins and then click Disable on Java

Disabling Java in Internet Explorer is a little more complex, for some reason. Brian Krebs has a description of a couple of different methods for removing Java from IE.






« Aloha woman fired shotgun during alcohol-fueled argument over gun control · Detecting and Removing Vulnerable Java Versions - continued · CompatDB Updates 08/29/12 »




Comments
comments powered by Disqus

MajorGeeks.Com » News » August 2012 » Detecting and Removing Vulnerable Java Versions - continued

© 2000-2026 MajorGeeks.com
Powered by Contentteller® Business Edition