Home Business IT Security Apple deepens Java block

Apple deepens Java block Featured

Apple has again updated its web plug-in blocking mechanism in order to prevent outdated and vulnerable versions of Java being used by web browsers.

XProtect arrived on the Mac as part of Mac OS X 10.6 Snow Leopard. Its purpose is to provide a remote 'kill switch' to prevent applications from running.

It was originally applied to prevent certain pieces of malware from running, but more recently Apple has used it to prevent old and vulnerable versions of Java from running in a browser.

Vulnerabilities in Java have made it possible to launch Windows-style 'drive-by' attacks on Macs. Malicious Java code embedded in a web page could be used to install malware when the page is opened, with no obvious indication to the user that something is amiss.

This technique was used successfully earlier this year to infect systems inside Apple and Facebook.

Part of the problem is that some users are slow to update to new versions of Java. This can be simply inertia (laziness?), but it can also be due to incompatibilities between the updated version of Java and existing applications and applets that the user needs to run.

Apple has been forcing users' hands by blacklisting older versions via XProtect, which is automatically updated.

The latest XProtect update disables the web plug-in for all versions of Java prior to Java 6 update 51 (the current version from Apple) and Java 7 update 25 (the current version from Oracle, for Lion and Mountain Lion only).

WEBINAR 26/27th May

Thinking of deploying Business Intelligence (BI)? So are your competitors.

And the most important, fundamental, tool for delivering your BI information to your users? Dashboards.

THIS IS ONE NOT TO MISS SO REGISTER NOW

DON'T MISS OUT - REGISTER NOW!

FREE WHITEPAPER - RISKS OF MOVING DATABASES TO VMWARE

VMware changed the rules about the server resources required to keep a database responding

It's now more difficult for DBAs to see interaction between the database and server resources

This whitepaper highlights the key differences between performance management between physical and virtual servers, and maps out the five most common trouble spots when moving production databases to VMware

1. Innacurate metrics
2. Dynamic resource allocation
3. No control over Host Resources
4. Limited DBA visibility
5. Mutual ignorance

Don't move your database to VMware before learning about these potential risks, download this FREE Whitepaper now!

DOWNLOAD!

Stephen Withers

joomla visitors

Stephen Withers is one of Australia¹s most experienced IT journalists, having begun his career in the days of 8-bit 'microcomputers'. He covers the gamut from gadgets to enterprise systems. In previous lives he has been an academic, a systems programmer, an IT support manager, and an online services manager. Stephen holds an honours degree in Management Sciences, a PhD in Industrial and Business Studies, and is a senior member of the Australian Computer Society.

Connect

 

 

 

 

Join the iTWire Community and be part of the latest news, invites to exclusive events, whitepapers and educational materials and oppertunities.
Why do I want to receive this daily update?
  • The latest features from iTWire
  • Free whitepaper downloads
  • Industry opportunities