Security Basics mailing list archives

Re: Java based vulnerabilities


From: infolookup () gmail com
Date: Wed, 16 Apr 2008 21:34:19 +0000

You might want to check out HP's SPI section on there website, or shmooncon 2007 video's, Billy did a nice presentation 
on all the hacks one can accomplish with java but also mentioned a few counter defenses, if I find a link I will send 
it to you.
Sent from my Verizon Wireless BlackBerry

-----Original Message-----
From: "Albert R. Campa" <abcampa () gmail com>

Date: Wed, 16 Apr 2008 15:12:35 
To:security-basics <security-basics () securityfocus com>
Subject: Java based vulnerabilities


I am wondering what the common protection for java vulnerabilities are.

Seems like upgrading to latest java version breaks ability to access
older or even current web consoles for varying products. Everyone is
scared to upgrade java because apps arent compatible with newer
version.

Do we just not upgrade and watch vulnerabilities popup or upgrade and
peeve off the customer? ha

Thanks for your input

Albert



Current thread: