website statistics

FireEye, a security firm, has discovered yet another 0-day Java vulnerability which is currently being used by hackers.
1 Star2 Stars3 Stars4 Stars5 Stars (Rate This)
Loading...

The discovery of new Java vulnerabilities has become a bit too common over the last few months. Every few days, we get to see a new security exploit present in the software. Now, the security firm FireEye, has discovered another 0-day Java vulnerability that is actively being used to attack ‘multiple customers.’


Java

This essentially means that although the security experts have discovered this exploit only now, the hackers in the wild have been in knowledge of it for a while and had been using it actively for their nefarious purposes. The scary part is that this vulnerability is present even in the recent version of Java such as the Java v1.6 Update 41 or Java v1.7 Update 15.

So how exactly does this vulnerability work? According to FireEye,

“Not like other popular Java vulnerabilities in which security manager can be disabled easily, this vulnerability leads to arbitrary memory read and write in JVM process. After triggering the vulnerability, exploit is looking for the memory which holds JVM internal data structure like if security manager is enabled or not, and then overwrites the chunk of memory as zero.

Upon successful exploitation, it will download a McRAT executable from same server hosting the JAR file and then execute it.”

Naturally, like so many times in the past, this time too the most effective solution is to uninstall Java plugin on your browser. If you must use the software, install it as a plugin on a secondary browser and not on the default browser.

Source: FireEye

Courtesy: TNW

Buy Cheapest Related Product From Amazon.com


Apple May Be Readying A Polycarbonate iPhone Priced At $330

Facebook Finally Bought Atlas Ads Network From Microsoft
You can also press the left/right arrow key on your keyboard to go to previous/next post
  On March 1, 2013(3 years, 4 months ago.)

You May Also Like:

What Do You Think?

Leave a Reply




Loading Facebook Comments ...

FTC Disclosure: Some of the links of this website are "affiliate links." This means if you click on the link and purchase the item, we will receive an affiliate commission.


Recent Search

Recent Tutorials

CiderTV is a great alternative to control Apple TV from the Notification Center. Check out this tutorial to set up CiderTV on your iPhone.
Are you annoyed by the split screen mode on the iPhone 6 Plus or 6s Plus? Check out this quick tutorial to turn off split screen feature.
If you could not wait to installed the iOS 10 beta version on you iPhone and now struggling for the errors, then this tutorial is for you.
Siri might not understand the question you asked. But you can use Siri by editing the text that you asked & it will give an updated answer.
Perhaps, you are new Apple user and you might have no idea how to change name of your iPhone. Check out this tutorial to change the name.
Check out this tutorial to lock Android phone using PIN code, Password or Pattern. Following the easy steps, you can secure your smartphone.
If you could not figure out yet, how to save and send GIF from your iPhone, then this tutorial is just for you.
Google released 'Ambient Display' feature with Android 5.x Lollipop. Check the tutorial to know how to turn off Android’s Ambient Display .
Have you recently got your 3D Touch iPhone 6s and struggling to delete apps? Go through the tutorial to learn how to delete or move the apps.
Just read this tutorial by yourself and from now on, we will show you, how you can make your iOS device read text loudly for you.
Close You Have To Login
User:
Pass:
Login With »Login With TwitterLogin With Facebook