U.S. says Java still risky, even after security update

Tue Jan 15, 2013 4:25am IST

A sign is shown at the headquarters of Oracle Corporation in Redwood City, California February 2, 2010. Picture taken February 2, 2010. REUTERS/Robert Galbraith/Files

A sign is shown at the headquarters of Oracle Corporation in Redwood City, California February 2, 2010. Picture taken February 2, 2010.

Credit: Reuters/Robert Galbraith/Files

Related Topics

Stocks

   

REUTERS - The U.S. Department of Homeland Security warned that a security update of Oracle Corp's ORCL.O Java software for Web browsers does not do enough to protect computers from attack, sticking to its previous advice that the programme be disabled.

"Unless it is absolutely necessary to run Java in web browsers, disable it," the Department of Homeland Security's Computer Emergency Readiness Team said on Monday in a posting on its website.

The software maker released an update to Java on Sunday, just days after the government issued its initial warning on the software, saying that bugs in the program were being exploited to commit identity theft and other crimes.

Security experts have warned that PCs running Java in their browsers could be attacked by criminals seeking to steal credit-card numbers, banking credentials, passwords and commit other types of computer crimes.

The Java software platform, created in the mid-1990s, enables developers to write one set of code that will run on PCs running on Microsoft Corp's (MSFT.O) Windows, Apple Inc (AAPL.O) Macs and servers running on the Linux operating system.

Security experts say the bugs only affect one part of the platform - software that plugs into Internet browsers.

While some researchers have long complained the software was buggy, it started generating more public scrutiny last year after a security scare in August.

"It's not like Java got insecure all of a sudden. It's been insecure for years," said Charlie Miller, a computer engineer with Twitter who has previously worked as a security consultant to Fortune 500 firms and as an analyst with the National Security Agency.

Java was responsible for 50 percent of all cyber attacks last year in which hackers broke into computers by exploiting software bugs, according to Kaspersky Lab.

Public interest in the issue surged last week as the Department of Homeland Security advised the general public to stop using Java and consumers turned for information on how to implement the agency's advice.

To disable Java on a Windows PC, go to the machine's Control Panel. Open the Java icon, click on the Security panel and uncheck the box for "enable Java content in the browser."

Further information is available from Oracle on its Java website here

Oracle's shares were little changed, up 13 cents at $34.99.

(Reporting by Jim Finkle; Editing by M.D. Golan and Andre Grenon)

FILED UNDER:
Comments (0)
This discussion is now closed. We welcome comments on our articles for a limited period after their publication.

  • Most Popular
  • Most Shared
People walk in the Wipro campus in Bangalore June 23, 2009. REUTERS/Punit Paranjpe/Files

Wipro Q4 net profit beats estimates, rises 29 percent

Wipro posted a 29 percent rise in its fourth-quarter net profit, beating expectations, helped by increased IT spending by its customers. For the quarter ended March 31, the company said it earned 22.27 billion rupees compared with 17.29 billion rupees a year earlier.  Full Article | Full Coverage 

REUTERS SHOWCASE

Election 2014

Election 2014

India holds biggest day of voting with BJP gaining strength  Read | Full Coverage 

Market Eye

Market Eye

Sensex jumps 351 points, snaps 3-day losing streak  Full Article 

Insider Trading Case

Insider Trading Case

Ex-Goldman director Rajat Gupta to surrender June 17 in insider case.  Full Article 

Expansion Plans

Expansion Plans

Reliance Industries, HPCL Mittal plan refinery expansions.  Full Article 

S&P on India

S&P on India

S&P: India's ratings to depend on next govt econ, fiscal policies.  Full Article 

Ambitious Aim

Ambitious Aim

In green car race, Toyota adds muscle with fuel-cell launch.  Full Article 

Deal Talk

Deal Talk

Piramal to buy 20 percent stake in Shriram Capital for $334 million.  Full Article 

Bond Market

Bond Market

A star abroad, RBI boss riles bond traders at home  Full Article 

Reuters India Mobile

Reuters India Mobile

Get the latest news on the go. Visit Reuters India on your mobile device.  Full Coverage