Black Hat: users…

Posted by wendyg in Uncategorized at August 1st, 2007

I’ll be writing a daily blog from Black Hat and Defcon for the next five days for the Register (Dan Goodin is also writing security news pieces, so I’m not sure what else there’ll be.) This morning I talked to a guy from the Firefox security team. He made the (I thought interesting) point that what concerns the team most (ensuring that updates don’t break anything, so that users don’t turn them off) is not the biggest problem users have, which he says is typically old copies of Java lying around on their machines that they don’t know where they got them. JREs are often installed by software or OEMs; often you have no idea how old they are. Users don’t think to clean them out and you don’t update what you don’t know is there. And they pose significant security risks.

wg

There are no comments yet.

Leave a Reply

Contributors to the Blindside wiki and blog should note their input forms part of a collaborative resource that is Creative Commons (by-sa 2.5) licensed. We hope these resources will be reused and remixed in the public interest. You do not need to seek permission before you re-use our works, although we do require that users attribute Blindside as their source, and license the resulting work under the same terms.