Disable your java

That is what is being recommended by security firms in the light of concerns that it leaves machines open to attacks.

http://www.reuters.com/article/2012/08/27/us-cybersecurity-java-idUSBRE87Q18820120827

There is also a test page so you can tell if your java version is exploitable

http://www.isjavaexploitable.com/

(I'm glad I don't have java installed and haven't for quite a few years)

I'm using NoScript which blocks all Java and JavaScripts automatically (if I don't enable them manually).

I know Google Chrome doesn't run Java content without manual approval. Do other browsers do this too?

Microsoft Java and Oracle Java aren't on my machine, and haven't been for years.

A lot of machines that go to repair shops have outdated java versions on them :(

Thing is though it is also the latest java version that is vulnerable.

Also Java-less for a long long time.

Unless you specifically need Java, (gaming maybe?), it's not really worth having on your machine.

Games and some sites (like online banks) use Java.

Games and some sites (like online banks) use Java.

Actions to take :-

1.

Switch to a bank that allows use of Non-IE browsers and excludes Java from its requirements

2.

Check whether the bank's casual attitude has leaked information that has/may result in identity fraud against you. This may help

http://www.topcashback.co.uk/credit_expert_free_experian_credit_report/

3.

Uninstall Java.

Thanks Hazelnut. I use Waterfox now and updated to Java7 update7 (64bit) and that warning site says my version is safe. NoScript keeps Java off till I tell it to run anyway. ;)

Security update issued on 30/08/2012

http://java.com/en/download/manual.jsp#win

Oracle has issued fixes.

http://www.zdnet.com/oracle-issues-major-java-security-fix-recommends-immediate-action-7000003517/

I still don't use Java though

Didn't last long did it, another vulnerability found in latest patched version

http://www.pcworld.com/article/261788/researchers_find_critical_vulnerability_in_java_7_patch_hours_after_release.html

Poor Java.

Some fun facts: JavaRa (the Java repair/removal tool that I write/maintain) download numbers have quadrupled since Oracle's mess started. An average of 18,000 people are using it to remove Java every single day.

Didn't last long did it, another vulnerability found in latest patched version

http://www.pcworld.c...er_release.html

Yup, Nearly as many updates as Firefox :lol:

I know Google Chrome doesn't run Java content without manual approval. Do other browsers do this too?

The last time I actually used Java for anything was to use Trend Micro Housecall, their free online virus scan which would prompt in both those old versions of IE and Firefox. I do remember visiting a site years ago which back then has some nifty Java stuff on it that automatically ran in both IE and Firefox with not prompting.

Are you guys trying to kill Java? :lol:

I never trusted Java, seeing it is a multi-platform attack surface. We need fewer attack areas, not more!

Thanks for the update! Bye bye, java! Pity that Open Office uses it...

Yup, Nearly as many updates as Firefox :lol:

But less secure, :)

For Firefox users: https://www.mozilla.org/en-US/plugincheck/

Are you guys trying to kill Java? :lol:

Virtually bury it next to the buggy and always vulnerable Flash Player. ;)