<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Unpatched Java Exploit Spotted In-the-Wild</title>
	<atom:link href="http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/feed/" rel="self" type="application/rss+xml" />
	<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/</link>
	<description>In-depth security news and investigation</description>
	<lastBuildDate>Sat, 11 Feb 2012 19:29:31 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: lobatt</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-7085</link>
		<dc:creator>lobatt</dc:creator>
		<pubDate>Thu, 24 Jun 2010 19:57:00 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-7085</guid>
		<description>7 Mac &amp; Linux users and counting...</description>
		<content:encoded><![CDATA[<p>7 Mac &amp; Linux users and counting&#8230;</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-7085" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('7085', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-7085-up" style="font-size:14px; color:#009933;">1</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-7085" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('7085', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-7085-down" style="font-size:14px; color:#990033;">2</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Solo Owl</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5345</link>
		<dc:creator>Solo Owl</dc:creator>
		<pubDate>Sat, 24 Apr 2010 16:37:24 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5345</guid>
		<description>Same here.</description>
		<content:encoded><![CDATA[<p>Same here.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5345" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5345', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5345-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5345" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5345', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5345-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: KFritz</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5109</link>
		<dc:creator>KFritz</dc:creator>
		<pubDate>Sat, 17 Apr 2010 00:47:35 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5109</guid>
		<description>I really enjoy the sinister graphics. These (supply your own description)s have real flair. Also, genuinely curious whether the powder is supposed to be speed or coke. Doubt that it&#039;s heroin.

Also notice that Windows 7 is MIA in the product listing.</description>
		<content:encoded><![CDATA[<p>I really enjoy the sinister graphics. These (supply your own description)s have real flair. Also, genuinely curious whether the powder is supposed to be speed or coke. Doubt that it&#8217;s heroin.</p>
<p>Also notice that Windows 7 is MIA in the product listing.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5109" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5109', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5109-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5109" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5109', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5109-down" style="font-size:14px; color:#990033;">2</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Matthew Wollenweber</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5103</link>
		<dc:creator>Matthew Wollenweber</dc:creator>
		<pubDate>Fri, 16 Apr 2010 16:38:48 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5103</guid>
		<description>@xAdmin 
It&#039;s certainly true that a limited account minimizes the damage from malware/attacks. But having some insight into the cleanup process now, we almost always recommend re-imaging the machine once malware is present. The time and skills required to get &quot;confident&quot; the malware didn&#039;t escalate is vastly more than the effort to re-image. Now I find myself oddly ambivalent to a standard security recommendation that I know works - in general.</description>
		<content:encoded><![CDATA[<p>@xAdmin<br />
It&#8217;s certainly true that a limited account minimizes the damage from malware/attacks. But having some insight into the cleanup process now, we almost always recommend re-imaging the machine once malware is present. The time and skills required to get &#8220;confident&#8221; the malware didn&#8217;t escalate is vastly more than the effort to re-image. Now I find myself oddly ambivalent to a standard security recommendation that I know works &#8211; in general.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5103" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5103', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5103-up" style="font-size:14px; color:#009933;">3</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5103" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5103', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5103-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Matthew Wollenweber</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5102</link>
		<dc:creator>Matthew Wollenweber</dc:creator>
		<pubDate>Fri, 16 Apr 2010 16:34:56 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5102</guid>
		<description>There aren&#039;t a lot of details on Java bug. But we recently detected highly obfuscated javascript that wrote more javascript, which wrote a call to Java, which then automatically downloaded and executed a fake-av executable. All this is in the wild. I haven&#039;t confirmed it&#039;s the same issue, but it sounds remarkably similar. It&#039;s written up at: http://www.cyberwart.com/blog/2010/04/14/malware-apr2010-01/</description>
		<content:encoded><![CDATA[<p>There aren&#8217;t a lot of details on Java bug. But we recently detected highly obfuscated javascript that wrote more javascript, which wrote a call to Java, which then automatically downloaded and executed a fake-av executable. All this is in the wild. I haven&#8217;t confirmed it&#8217;s the same issue, but it sounds remarkably similar. It&#8217;s written up at: <a href="http://www.cyberwart.com/blog/2010/04/14/malware-apr2010-01/" rel="nofollow">http://www.cyberwart.com/blog/2010/04/14/malware-apr2010-01/</a></p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5102" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5102', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5102-up" style="font-size:14px; color:#009933;">2</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5102" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5102', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5102-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Mark Higdon</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5082</link>
		<dc:creator>Mark Higdon</dc:creator>
		<pubDate>Thu, 15 Apr 2010 23:13:40 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5082</guid>
		<description>@Michael above: I stand corrected.  For some reason, it takes only a page refresh on my browser to see a just-posted comment.  Apparently has nothing to do with JDT.</description>
		<content:encoded><![CDATA[<p>@Michael above: I stand corrected.  For some reason, it takes only a page refresh on my browser to see a just-posted comment.  Apparently has nothing to do with JDT.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5082" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5082', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5082-up" style="font-size:14px; color:#009933;">1</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5082" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5082', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5082-down" style="font-size:14px; color:#990033;">1</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Phoenix</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5080</link>
		<dc:creator>Phoenix</dc:creator>
		<pubDate>Thu, 15 Apr 2010 22:43:20 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5080</guid>
		<description>Actually Microsoft did market a Unix type OS in 1979. Their product was called Xenix which they obtained on a license from AT&amp;T, and which they licensed to computer manufacturers.</description>
		<content:encoded><![CDATA[<p>Actually Microsoft did market a Unix type OS in 1979. Their product was called Xenix which they obtained on a license from AT&amp;T, and which they licensed to computer manufacturers.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5080" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5080', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5080-up" style="font-size:14px; color:#009933;">2</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5080" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5080', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5080-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: James</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5076</link>
		<dc:creator>James</dc:creator>
		<pubDate>Thu, 15 Apr 2010 20:03:01 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5076</guid>
		<description>Does update 20 (jre-6u20) fix this issue? Is this confirmed?</description>
		<content:encoded><![CDATA[<p>Does update 20 (jre-6u20) fix this issue? Is this confirmed?</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5076" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5076', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5076-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5076" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5076', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5076-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Andy Laughton</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5074</link>
		<dc:creator>Andy Laughton</dc:creator>
		<pubDate>Thu, 15 Apr 2010 19:55:37 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5074</guid>
		<description>Brian, thank you.  I always leave a link to this blog, usually it is a link to the article I am referring to.

To Tom Seaview - maybe m$ will see the light and switch windows to a more Unix-like OS.  A bit like MAC OS X perhaps.  I run Linux but I&#039;m not going down the &quot;my OS is better than your OS&quot; road.  I believe in the right tool for the job.  I have never used MAC OS.</description>
		<content:encoded><![CDATA[<p>Brian, thank you.  I always leave a link to this blog, usually it is a link to the article I am referring to.</p>
<p>To Tom Seaview &#8211; maybe m$ will see the light and switch windows to a more Unix-like OS.  A bit like MAC OS X perhaps.  I run Linux but I&#8217;m not going down the &#8220;my OS is better than your OS&#8221; road.  I believe in the right tool for the job.  I have never used MAC OS.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5074" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5074', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5074-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5074" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5074', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5074-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: prairie_sailor</title>
		<link>http://krebsonsecurity.com/2010/04/unpatched-java-exploit-spotted-in-the-wild/comment-page-1/#comment-5067</link>
		<dc:creator>prairie_sailor</dc:creator>
		<pubDate>Thu, 15 Apr 2010 18:41:05 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=2435#comment-5067</guid>
		<description>Provided that someone doesn&#039;t recompile their attempted download for the non windows OS of your choice.</description>
		<content:encoded><![CDATA[<div style="background-color:#FFFFCC !important"><p>Provided that someone doesn&#8217;t recompile their attempted download for the non windows OS of your choice.</p>
</div><div class="CommentRating">Well-loved. Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5067" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5067', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-5067-up" style="font-size:14px; color:#009933;">8</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5067" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5067', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-5067-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached (User agent is rejected)
Database Caching 5/23 queries in 0.014 seconds using memcached
Object Caching 949/967 objects using memcached

Served from: krebsonsecurity.com @ 2012-02-12 00:10:54 -->
