An entrepreneurial hackerl has found an exploit for a new zero-day vulnerability in Java and reportedly has sold it to at least two buyers at $5,000 a pop. News of the latest vulnerability follows on from a critical bug that emerged last week for which Oracle rushed out a fix over the weekend. The new zero-day exists in the patch Oraclerushed out, Java 7 Update 11, the seller claimed. There's a burgeoning trade in finding and selling exploits. However, the sellers aren't all cybercriminals.
No comments:
Post a Comment