New Java Exploit Fetches $5,000 Per Buyer — Krebs on Security
Less than 24 hours after Oracle patched a dangerous security hole in its Java software that was being used to seize control over Windows PCs, miscreants in the Underweb were already selling an exploit for a different and apparently still-unpatched zero-day vulnerability in Java, KrebsOnSecurity has learned.On Sunday, Oracle rushed out a fix for a critical bug in Java that had been folded into exploit kits, crimeware made to automate the exploitation of computers via Web browser vulnerabilities. On Monday, an administrator of an exclusive cybercrime forum posted a message saying he was selling a new Java 0day to a lucky two buyers. The cost: starting
What the influencers are saying
-
Lee
New Java Exploit Fetches $5,000 Per Buyer http://t.co/YLVXIDVW
-
CoreSecurity
New Java #zero-day vuln and exploit, less than 24hrs after Oracle fixed critical #security hole http://t.co/NuhIDZyL via @briankrebs
-
Andrew Storms
@briankrebs is reporting on more #Java 0 days. http://t.co/sGpcvfnS #itsecurity
-
briankrebs
Less than 24 hours after Oracle fixed a Java 0day, miscreants were selling another Java 0day in Java 7 Update 11 http://t.co/G3sw6620
-
Dave Marcus
RT @grecs: RT @briankrebs: Less than 24 hours after Oracle fixed a Java 0day, another Java 0day in Java 7 Update 11 http://t.co/OmmJAxp0
-
Avram Marius (d3v1l)
RT @briankrebs: New Java Exploit Fetches $5,000 Per Buyer http://t.co/4CLqbJHc
-
grecs
RT @briankrebs: Less than 24 hours after Oracle fixed a Java 0day, another Java 0day in Java 7 Update 11 http://t.co/OmmJAxp0
-
Panda Security
New Java Exploit Fetches $5,000 Per Buyer http://t.co/HGA2wrOZ via @briankrebs
Related Reading
| To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy. |













