Feeds

Oracle patches Java 0-day, goes to Defcon 2

Have you tried turning it off and on again, suggests Oracle security wonk

Intelligent flash storage arrays

Oracle has patched the latest Java nasty, suggesting users of the increasingly-flaw-prone product visit java.com pronto to download a new version of the software that addresses the flaw and stops malicious websites gaining control of compromised computers.

In a blog post describing the fix, Oracle's Eric P. Maurice may just have leaked some of Oracle's worries about Java besmirching its overall reputation, writing “These vulnerabilities do not affect Java on servers, Java desktop applications, or embedded Java.”

Oracle has also changed Java-in-a-browser's default security level to “High”. Maurice writes that means “... unsuspecting users visiting malicious web sites will be notified before an applet is run and will gain the ability to deny the execution of the potentially malicious applet.” Cue social engineering attacks, one imagines.

Maurice has another weapon he hopes Java users will deploy: the off button. “Note also that Java SE 7 Update 10 introduced the ability for users to easily disable Java in their browsers through the Java Control Panel,” he wrote. Another bug like this one and even that advice may be redundant: users must surely be considering just how much they need Sun's software spawn given its frequent pwnage. ®

Top 5 reasons to deploy VMware with Tegile

Whitepapers

Choosing cloud Backup services
Demystify how you can address your data protection needs in your small- to medium-sized business and select the best online backup service to meet your needs.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.