Java zero-day flaw under active attack

|

Just days after Google researcher Tavis Ormandy released details on a dangerous new Java vulnerability, malicious hackers have pounced and are exploiting the flaw in the wild to launch drive-by download attacks.
Virus hunters have spotted the attacks on a popular song lyrics Web site. Any visitor to that Web site with the Java Plugin for Browsers installed (Internet Explorer or Firefox) will get infected with malware.
According to AVG’s Roger Thompson, the attacks are likely to spread because of the simplicity in launching a successful exploit:
The code involved is really simple, and that makes it easy to copy, so it’s not surprising that just five days later, we’re detecting that code at an attack server in Russia.

http://blogs.zdnet.com/security/?p=6161&tag=content;col2

0 comments:

Related Posts with Thumbnails