Free Republic
Browse · Search
News/Activism
Topics · Post Article

To: palmer

Are you retarded?

This is an exploit of the official Java. It has nothing to do with downloading it. You still haven’t read the alert have you?


25 posted on 01/11/2013 10:31:22 PM PST by Drango (A liberal's compassion is limited only by the size of someone else's wallet.)
[ Post Reply | Private Reply | To 24 | View Replies ]


To: Drango
Java doesn't do anything unless you download code. No different from Adobe's Flash and their reader. The first step in the exploit is attracting the victim to a malicious website. Most victims go there willingly (porn, get-rich-quick, or other to-good-to-be-true). They download the code. Then the code executes inside the Java VM (or inside of Flash or inside Adobe or even just inside a browser with Javascript turned on. Or any other plug-in that can execute code of some sort.

Next the code exploits some vulnerability in the VM or interpreter, usually some kind of memory error. The memory error causes memory corruption which causes the VM or whatever to execute improper instructions which cause the actual damage (in the current case allowing the java VM to download and execute arbitrary binary code).

29 posted on 01/11/2013 10:50:37 PM PST by palmer (Obama = Carter + affirmative action)
[ Post Reply | Private Reply | To 25 | View Replies ]

Free Republic
Browse · Search
News/Activism
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson