{"id":5594,"date":"2012-08-27T09:26:14","date_gmt":"2012-08-27T16:26:14","guid":{"rendered":"http:\/\/www.intego.com\/mac-security-blog\/?p=5594"},"modified":"2016-02-12T10:31:31","modified_gmt":"2016-02-12T18:31:31","slug":"new-java-zero-day-exploit-shows-multi-platform-development","status":"publish","type":"post","link":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/","title":{"rendered":"New Java Zero-Day Exploit Shows Multi-Platform Development"},"content":{"rendered":"<p><strong>Update September 10, 2012<\/strong><\/p>\n<p>This exploit has been patched by Oracle and Apple. You can find more information about the update <a href=\"https:\/\/www.intego.com\/mac-security-blog\/apple-releases-java-6-update-to-fix-vulnerabilities\/\">here<\/a>.<\/p>\n<p>____<\/p>\n<p><strong>Update August 29, 2012<\/strong><\/p>\n<p>The exploit has been has now been given a reference number in the Common Vulnerability and Exposures List: <a href=\"http:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=2012-4681\">CVE-2012-4681<\/a><\/p>\n<p>____<\/p>\n<p>There is a new Java zero-day exploit that was discovered last night, which is currently being used in targeted attacks against Windows users to deliver the Poison Ivy Remote Access Trojan. While this is in the wild, this is not being widely used at this time. What is more worrisome is the potential for this to be used by other malware developers in the near future.<\/p>\n<p>The exploit in all major browsers and\u00a0appears to work on some versions of Linux, OS X 10.7 and higher, as well as Windows, if you&#8217;re using the latest version of Java.<\/p>\n<p align=\"center\"><img src=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/08\/zeroos1.png\" alt=\"\" \/><\/p>\n<p>At this time there is no patch available for this exploit, so it&#8217;s highly recommend that you <strong>disable Java<\/strong> until this vulnerability has been fixed.<\/p>\n<p>Java is a popular vehicle for malware authors &#8211; an unpatched Java flaw was largely responsible for the <a href=\"https:\/\/www.intego.com\/mac-security-blog\/new-flashback-variant-takes-advantage-of-unpatched-java-vulnerability\/\">success of Flashback<\/a> earlier this year. Additionally, Java applets have been part of the installation process for almost every malware attack on OS X this year. Oracle is on a quarterly patch schedule, which means the next likely patch will not be released until October 16. In malware terms, several weeks is quite a huge gap in protection. As source code for this exploit is already being distributed, the odds are very good that we&#8217;ll see more working malware in the wild before this is patched. Given the interest lately in multi-platform malware and the fact that this vulnerability works on Linux and OS X, it is particularly important that we take preventative measures to protect ourselves.<\/p>\n<p>Detection for the existing threat and the proof of concept (now included in the MetaSploit tool) are included in today&#8217;s virus definitions. <a href=\"https:\/\/www.intego.com\/virusbarrier\">Intego VirusBarrier<\/a> users are advised to update as soon as possible &#8211; this may not protect against all possible implementations of this exploit, but it is a generic detection that may help proactively protect against new variants based on the known implementation.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Update September 10, 2012 This exploit has been patched by Oracle and Apple. You can find more information about the update here. ____ Update August 29, 2012 The exploit has been has now been given a reference number in the Common Vulnerability and Exposures List: CVE-2012-4681 ____ There is a new Java zero-day exploit that [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":8763,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"spay_email":"","jetpack_publicize_message":"","jetpack_is_tweetstorm":false},"categories":[190],"tags":[52,75,86,982],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v17.4 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<meta name=\"description\" content=\"Update September 10, 2012 This exploit has been patched by Oracle and Apple. You can find more information about the update here. ____ Update August 29,\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"New Java Zero-Day Exploit Shows Multi-Platform Development - The Mac Security Blog\" \/>\n<meta property=\"og:description\" content=\"Update September 10, 2012 This exploit has been patched by Oracle and Apple. You can find more information about the update here. ____ Update August 29,\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/\" \/>\n<meta property=\"og:site_name\" content=\"The Mac Security Blog\" \/>\n<meta property=\"article:published_time\" content=\"2012-08-27T16:26:14+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2016-02-12T18:31:31+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"400\" \/>\n\t<meta property=\"og:image:height\" content=\"260\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Lysa Myers\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\",\"name\":\"Intego\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/\",\"sameAs\":[],\"logo\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#logo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png\",\"contentUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png\",\"width\":875,\"height\":875,\"caption\":\"Intego\"},\"image\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#logo\"}},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#website\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/\",\"name\":\"The Mac Security Blog\",\"description\":\"Keep Macs safe from the dangers of the Internet\",\"publisher\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.intego.com\/mac-security-blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#primaryimage\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg\",\"contentUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg\",\"width\":\"400\",\"height\":\"260\",\"caption\":\"Malware Alert from Intego\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#webpage\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/\",\"name\":\"New Java Zero-Day Exploit Shows Multi-Platform Development - The Mac Security Blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#primaryimage\"},\"datePublished\":\"2012-08-27T16:26:14+00:00\",\"dateModified\":\"2016-02-12T18:31:31+00:00\",\"description\":\"Update September 10, 2012 This exploit has been patched by Oracle and Apple. You can find more information about the update here. ____ Update August 29,\",\"breadcrumb\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.intego.com\/mac-security-blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"New Java Zero-Day Exploit Shows Multi-Platform Development\"}]},{\"@type\":\"Article\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#webpage\"},\"author\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/12b11624d5a648c576d8dce6f93b230a\"},\"headline\":\"New Java Zero-Day Exploit Shows Multi-Platform Development\",\"datePublished\":\"2012-08-27T16:26:14+00:00\",\"dateModified\":\"2016-02-12T18:31:31+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#webpage\"},\"wordCount\":369,\"commentCount\":2,\"publisher\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg\",\"keywords\":[\"Exploit\",\"Java\",\"Malware\",\"Zero Day\"],\"articleSection\":[\"Malware\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#respond\"]}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/12b11624d5a648c576d8dce6f93b230a\",\"name\":\"Lysa Myers\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/783af524dca7753ceb3cd9a576398a0e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/783af524dca7753ceb3cd9a576398a0e?s=96&d=mm&r=g\",\"caption\":\"Lysa Myers\"},\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/author\/lysam\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"description":"Update September 10, 2012 This exploit has been patched by Oracle and Apple. You can find more information about the update here. ____ Update August 29,","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/","og_locale":"en_US","og_type":"article","og_title":"New Java Zero-Day Exploit Shows Multi-Platform Development - The Mac Security Blog","og_description":"Update September 10, 2012 This exploit has been patched by Oracle and Apple. You can find more information about the update here. ____ Update August 29,","og_url":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/","og_site_name":"The Mac Security Blog","article_published_time":"2012-08-27T16:26:14+00:00","article_modified_time":"2016-02-12T18:31:31+00:00","og_image":[{"width":"400","height":"260","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_misc":{"Written by":"Lysa Myers","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Organization","@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization","name":"Intego","url":"https:\/\/www.intego.com\/mac-security-blog\/","sameAs":[],"logo":{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/#logo","inLanguage":"en-US","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png","contentUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png","width":875,"height":875,"caption":"Intego"},"image":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#logo"}},{"@type":"WebSite","@id":"https:\/\/www.intego.com\/mac-security-blog\/#website","url":"https:\/\/www.intego.com\/mac-security-blog\/","name":"The Mac Security Blog","description":"Keep Macs safe from the dangers of the Internet","publisher":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.intego.com\/mac-security-blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#primaryimage","inLanguage":"en-US","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg","contentUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg","width":"400","height":"260","caption":"Malware Alert from Intego"},{"@type":"WebPage","@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#webpage","url":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/","name":"New Java Zero-Day Exploit Shows Multi-Platform Development - The Mac Security Blog","isPartOf":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#primaryimage"},"datePublished":"2012-08-27T16:26:14+00:00","dateModified":"2016-02-12T18:31:31+00:00","description":"Update September 10, 2012 This exploit has been patched by Oracle and Apple. You can find more information about the update here. ____ Update August 29,","breadcrumb":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.intego.com\/mac-security-blog\/"},{"@type":"ListItem","position":2,"name":"New Java Zero-Day Exploit Shows Multi-Platform Development"}]},{"@type":"Article","@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#article","isPartOf":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#webpage"},"author":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/12b11624d5a648c576d8dce6f93b230a"},"headline":"New Java Zero-Day Exploit Shows Multi-Platform Development","datePublished":"2012-08-27T16:26:14+00:00","dateModified":"2016-02-12T18:31:31+00:00","mainEntityOfPage":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#webpage"},"wordCount":369,"commentCount":2,"publisher":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization"},"image":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#primaryimage"},"thumbnailUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg","keywords":["Exploit","Java","Malware","Zero Day"],"articleSection":["Malware"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.intego.com\/mac-security-blog\/new-java-zero-day-exploit-shows-multi-platform-development\/#respond"]}]},{"@type":"Person","@id":"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/12b11624d5a648c576d8dce6f93b230a","name":"Lysa Myers","image":{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/#personlogo","inLanguage":"en-US","url":"https:\/\/secure.gravatar.com\/avatar\/783af524dca7753ceb3cd9a576398a0e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/783af524dca7753ceb3cd9a576398a0e?s=96&d=mm&r=g","caption":"Lysa Myers"},"url":"https:\/\/www.intego.com\/mac-security-blog\/author\/lysam\/"}]}},"jetpack_featured_media_url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2012\/12\/MalwareAlert-intego.jpg","jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p4VAYd-1se","amp_enabled":true,"_links":{"self":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/5594"}],"collection":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/comments?post=5594"}],"version-history":[{"count":11,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/5594\/revisions"}],"predecessor-version":[{"id":5643,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/5594\/revisions\/5643"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/media\/8763"}],"wp:attachment":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/media?parent=5594"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/categories?post=5594"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/tags?post=5594"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}