Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

But almost all of these end-users have admins. People that activated java in the browser form them. And these can take care of the updates.


I'm still not sure what you're getting at here. It's a zero-day exploit. Updates won't help with that.


Java-applets in the internet are not used anymore as i explained. And if quite a few poeple use it in their intranets they don't care particular for a 0day. If their intranet is used to deploy these, everything is already lost.

Even if the webbrowser that displays the intranet applets is used to surf the internet it's not a attac surface as you have to whitelist every site that's able to use applets.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: