MalwareTips.com
Current time: 05-24-2013, 03:49 AM
Hello,is this your first visit?! If NOT use this login panel!
Nick:  
Password:     
If YES, you should join
our amazing community!
Create an account!
Follow us
Facebook MalwareTips.com Twitter MalwareTips.com Google Plus  MalwareTips.com
  • Portal
    Home
  • News
    Headlines
  • Forums
    Community
  • Tutorials
    How-to's
  • Malware Help
    Assistance
    • Removal assistance
    • Malware removal guides
    • Security wizard
  • Reviews
    Products review
    • Video reviews
    • Written reviews
  • Giveaways
    Free stuff
    • Giveaways and promo
    • Discounts
    • Desktop enhancements
  • Malware Hub
    Virus Pipe
    • Virus Exchange
    • Virus List
  • Blogs
    Research

User Control Panel View New Posts View Today's Posts House Rules

MalwareTips.com / Daily News & Tips / News Section / News Archive v
« Previous 1 ... 64 65 66 67 68 ... 136 Next »
/ Mac Trojan infects machines via unpatched Java bug
Tweet
Threaded Mode | Linear Mode
Mac Trojan infects machines via unpatched Java bug
04-03-2012, 05:37 PM
Post: #1
Jack Online
Community Admin
Posts: 6,198
Joined: Jan 2011
Kudos 2251
Mac Trojan infects machines via unpatched Java bug
Net-Security wrote:Flashback Trojan variants have been targeting Mac users since September 2011, and they have gone through a variety of changes and techniques aimed at achieving its installation and avoiding its detection.

They initially posed as an Adobe Flash Player installer, then have acquired the capability to disrupt the automatic updating of XProtect, the operating system's built-in anti-malware application.

At the beginning, the user was responsible for downloading and running the malware, but lately even that step has been removed as newer variants have begun being dropped on targeted systems via an exploit of unpatched Java vulnerabilities.

According to F-Secure researchers, the latest variant of the malware - Flashback.K - is being distributed to Mac users through the misuse of one such vulnerability (CVE-2012-0507) that has already been patched in the Windows version of Java.

Unfortunately, Mac users haven't received a patch for that particular vulnerability since Apple hasn't yet ported it to Java for Macs. In addition to all that, there are rumors that an exploit for another unpatched Java flaw is being offered for sale on online forums.

Read more : https://www.net-security.org/malware_news.php?id=2052
Visit this user's website Find all posts by this user
04-03-2012, 05:44 PM
Post: #2
Jack Online
Community Admin
Posts: 6,198
Joined: Jan 2011
Kudos 2251
RE: Mac Trojan infects machines via unpatched Java bug
Other platform ... .same entry point for exploit driven infections.........
Oracle really needs to improve their Update process because at this point it can be considered a High Risk having Java installed on any platform...
Visit this user's website Find all posts by this user
04-03-2012, 05:53 PM
Post: #3
jamescv7 Offline
Silver Member (Level 6)
Posts: 5,932
Joined: Mar 2011
Kudos 943
RE: Mac Trojan infects machines via unpatched Java bug
The good thing here Mac Antivirus were already widespread in the internet so majority surely detected at the latest threat vector.

[Image: 2841f33fc6c2ddd879a680ae1a4c167a.gif]

[Image: 2a7dbdb01a9aad0a501ca25c64b7f822.gif]
Find all posts by this user
04-03-2012, 07:14 PM
Post: #4
Prorootect Offline
Silver Member (Level 6)
Posts: 1,517
Joined: Nov 2011
Kudos 423
RE: Mac Trojan infects machines via unpatched Java bug
So WHY they have this Java ..

Why.Sleepy

W.XPSP2, 12proc., 17serv.; IE8 sandboxed & tweaked
Don't Tread on Me on MalwareTips forums Join, or Die |---> Shroud of Turin
[Image: eoghD.gif]The Tree of Liberty Must Be Refreshed
Find all posts by this user
04-03-2012, 07:46 PM
Post: #5
jamescv7 Offline
Silver Member (Level 6)
Posts: 5,932
Joined: Mar 2011
Kudos 943
RE: Mac Trojan infects machines via unpatched Java bug
Some of the websites uses Java in order to work and used for development. Some online scanners uses Java in order to work and conduct a scan.

However when there is no purpose of using Java its better to removed thus your being free from exploits through in a huge percentage. Laptops which preinstalled have Java thus users didn't noticed it on some cases.

[Image: 2841f33fc6c2ddd879a680ae1a4c167a.gif]

[Image: 2a7dbdb01a9aad0a501ca25c64b7f822.gif]
Find all posts by this user
04-03-2012, 11:41 PM
Post: #6
McLovin Offline
Gold Member (Level 7)
Posts: 7,664
Joined: Apr 2011
Kudos 1271
RE: Mac Trojan infects machines via unpatched Java bug
You rarely see malware that pops up for MACs because of how secure their operating system is.

McLovins' Configuration | CyberTechTips.com
Visit this user's website Find all posts by this user
04-04-2012, 03:41 AM
Post: #7
Gnosis Offline
Silver Member (Level 6)
Posts: 1,927
Joined: Apr 2011
Kudos 565
RE: Mac Trojan infects machines via unpatched Java bug
I am pretty close to ridding my PC of Java. I have already shut it down in my Firefox browser.

Distress of nations, with perplexity, the sea and the waves roaring; men's hearts failing them from fear, and the expectation of those things which are coming on the earth
Find all posts by this user
04-04-2012, 03:55 AM
Post: #8
Jack Online
Community Admin
Posts: 6,198
Joined: Jan 2011
Kudos 2251
RE: Mac Trojan infects machines via unpatched Java bug
Seems like Mozilla is taking some actions:

The Post wrote:Mozilla Adds Older Java Versions to Firefox Blocklist

Mozilla has made a change in Firefox that will block all of the older versions of Java that contain a critical vulnerability that's being actively exploited. The decision to add these vulnerable versions of Java to the browser's blocklist is designed to protect users who may not be aware of the flaw and attacks.

The specific vulnerability in Java that Mozilla is trying to protect users against was patched by Oracle in February, but Java is one of the many browser components and extensions that users sometimes will fail to update for long periods of time. If users don't have the automatic updates enabled for Java, it could be a long time before they remember to update the software and that's a dangerous habit given how much attackers love to exploit Java.

"This vulnerability—present in the older versions of the JDK and JRE—is actively being exploited, and is a potential risk to users. To mitigate this risk, we have added affected versions of the Java plugin for Windows (Version 6 Update 30 and below as well as Version 7 Update 2 and below) to Firefox’s blocklist. A blocklist entry for the Java plugin on OS X may be added at a future date. Mozilla strongly encourages anyone who requires the JDK and JRE to update to the current version as soon as possible on all platforms," Mozilla's Kev Needham said.

Read more: http://threatpost.com/en_us/blogs/mozill...ist-040312

Also it's important to be noted that Apple has released a patch that will fix this vulnerability.You can read more over at Sophos blog: http://nakedsecurity.sophos.com/2012/04/...mac-users/
Visit this user's website Find all posts by this user
04-04-2012, 10:09 AM (This post was last modified: 04-04-2012 10:11 AM by jamescv7.)
Post: #9
jamescv7 Offline
Silver Member (Level 6)
Posts: 5,932
Joined: Mar 2011
Kudos 943
RE: Mac Trojan infects machines via unpatched Java bug
+1 for Mozilla providing the action regarding to Java Vulnerability.

Some cases most of the users have old plugin installed in Firefox and the only way is to disable it, removing the Java console isn't hard thus a linkshows on the steps.

[Image: 2841f33fc6c2ddd879a680ae1a4c167a.gif]

[Image: 2a7dbdb01a9aad0a501ca25c64b7f822.gif]
Find all posts by this user
« Next Oldest | Next Newest »


Possibly Related Threads...
Thread: Author Replies: Views: Last Post
  Java users beware: Exploit circulating for just-patched critical flaw Jack 3 366 04-24-2013 11:20 AM
Last Post: jamescv7
  PWN2OWN results Day Two - Adobe Reader and Flash owned, Java felled yet again Jack 0 504 03-08-2013 06:55 PM
Last Post: Jack
  Zero Day Java Vulnerability Allows McRat Trojan Infections Jack 3 819 03-05-2013 05:36 AM
Last Post: softwareFREEk
  Two more zero-day vulnerabilities in Java, seemingly McLovin 1 278 02-28-2013 02:07 PM
Last Post: Gnosis
  Mozilla adds all recent Java versions to blocklist exterminator20 6 508 02-28-2013 06:09 AM
Last Post: softwareFREEk

  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread


User(s) browsing this thread: 1 Guest(s)

 


Proudly powered by MyBB.
Copyright - MalwareTips.com © 2012. All rights reserved. | Webdesign by End Soft Design
Contact Us | Privacy policy | Return to Top | Return to Content | Lite (Archive) Mode | RSS Syndication | Members List | Forum Team

MalwareTips.com is an independent website.All trademarks mentioned on this page are the property of their respective owners.