Skip to main content

New security vulnerability found in Java; experts recommend disabling the app

Image used with permission by copyright holder

Researchers have identified a zero-day security flaw in the Java program that hackers are exploiting. The concern is severe enough that the U.S. Computing Readiness Team, a unit of the Department of Homeland Security’s National Cyber Security Division, issued a note about the flaw. The vulnerability has already been incorporated into two of the most popular Web threat tools for hackers’ malware distribution, so the threat is live and putting computers at risk, The Next Web reported. 

The problem is a remote code execution vulnerability in Java 7 Update 10 and earlier versions of the application. This weakness allows a hacker to execute arbitrary code on an exposed machine. The Computing Readiness Team said there is no known workaround yet to protect against malicious attacks, and they recommended disabling Java if at all possible until maker Oracle can enact some repairs. If you can’t disable or uninstall the application, your best bet is to disable it in your main browser and keep all of your Java use confined to a separate browser.  

A French researcher working under the name Kafeine first reported the vulnerability, and security company AlienVault Labs confirmed the flaw. Kafeine said in his post about the problem that the latest version of Java was being exploited on a site receiving a heavy volume of traffic. 

Java has been a source of security concerns for years. Java 7 Update 7 was an out-of-cycle patch released in September to block a vulnerability that let hackers assume total control over a computer. The software is near-ubiquitous, making it an appealing target for hackers. Check out our explainer on Java for more information, including a walkthrough of how to disable and uninstall the app on your computer. 

Image via Jennie Faber

Editors' Recommendations

Anna Washenko
Former Digital Trends Contributor
Anna is a professional writer living in Chicago. She covers everything from social media to digital entertainment, from tech…
Apple’s new sign-in feature brings a secure way to log in to your iOS 13 apps
Sign In with Apple.

At WWDC 2019, Apple is continuing to make its case and push for stronger privacy features. To make it simpler and more secure for iOS 13 users to sign in to apps, Apple is launching a new sign in button called "Sign in with Apple." The tool works like similar social sign-in buttons -- like those that allow users to log into third-party apps with either their Google or Facebook ID -- but adds Apple's twist with a focus on privacy and security.

Most apps and services today require users to either create a user profile or login with a social ID to deliver a unique, customized experience. The former requires comes with a lot of friction, as it requires you to enter a lot of information, while the latter is convenient but could reveal a lot about you.

Read more
Best tools to stress test your CPU
A CPU cooler installed on a motherboard.

Running a CPU stress test tool is a great way to break in a new processor, test an overclock, see how capable your cooling is, or just make sure your PC is running as well as it should. There are a number of CPU stress tests out there, but we have a few favorites you should check out.

The goal of stress testing is to push the computer to failure. You want to see how long it takes before it becomes unstable. It's usually a good idea to run tests for at least an hour or two, though some can take longer.

Read more
One of Lenovo’s best-selling ThinkPad laptops is 45% off today
Lenovo ThinkPad X1 Carbon Gen 12 front angled view showing display and keyboard.

If you're on browsing through laptop deals for a machine that will immensely help in boosting your productivity, you may want to check out Lenovo's offer for the popular Lenovo ThinkPad X1 Carbon Gen 11. It's a powerful device so its original price is $3,319, but a 45% discount from Lenovo brings it down to a more reasonable $1,825. That's $1,494 in savings that you'll be able to spend on software and accessories, but you're going to have to proceed with the purchase right now if you want to make sure that you get it because this is a clearance sale, so there's no guarantee that stocks will still be available tomorrow.

Why you should buy the Lenovo ThinkPad X1 Carbon
The Lenovo ThinkPad X1 Carbon Gen 11 challenges the performance of the best laptops with its 13th-generation Intel Core i7 processor, integrated Intel Iris Xe Graphics, and 16GB of RAM that our guide on how much RAM do you need says is similar to what you'll find in top-tier machines. The device comes with a 14-inch touchscreen with WUXGA resolution for sharp details and bright colors, a 1TB SSD for ample storage space for your files, and Windows 11 Pro pre-installed so that you can access the more advanced capabilities of the operating system.

Read more