Java Glitch Found

SANTA CLARA, Calif. – Security firm iDefense issued a warning Tuesday that Sun Microsystems' Java Plug-in technology has been identified as having a vulnerability that if exploited could expose a user's network.

The Java Plug-in establishes a connection between popular browsers and the Java platform.

According to Reston, Va.-based iDefense, which roots out malicious code, the vulnerability has been detected in Java 2 Platform, Standard Edition (J2SE) 1.4.2_01 and 1.4.2_04.

The security firm also believes that earlier versions of Java Virtual Machine are vulnerable and that browsers such as Internet Explorer, Mozilla and Firefox on both Windows and Unix platforms could be exploited if they are running a vulnerable JVM.

The vulnerability could provide a gateway for a hacker to bypass the Java sandbox and all security restrictions imposed within Java Applets and provide access to downloading, uploading or executing files within the user's PC, iDefense warned.

"Successful exploitation allows remote attackers to execute hostile Applets that can access files as well as access the network," iDefense stated.

According to the developer's definition, a JVM "mimics" a real Java processor, enabling Java bytecode to be executed as actions or operating system calls on any processor regardless of the operating system.

"A number of private Java packages exist within the JVM and are used internally by the VM," iDefense stated. "Security restrictions prevent applets from accessing these packages. Any attempt to access these packages, results in a thrown exception of 'AccessControlException,' unless the applet is signed and the user has chosen to trust the issuer."

The security firm is recommending that disabling Java or JavaScript will prevent exploitation as the vulnerability relies on the data transfer between the two components.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

SWR Data Publishes 2026 'Hot List' Report

Adult industry market research outfit SWR Data has published its 2026 Hot List report on the top creator platforms of 2025.

Adult Chat Platform Arousr Sets Human-Only Host Policy

Adult chat platform Arousr has announced a policy to only use verified human hosts, not chatbots.

Arizona State Legislator Proposes Porn Ban

A member of Arizona’s House of Representatives on Wednesday introduced a bill that would make it illegal to produce or distribute adult content in that state.

SinfulXAI to Launch New AI Generator

AI companion platform SinfulXAI has announced its new AI video generator, launching in February.

AEBN Publishes Popular Searches for November, December

AEBN has published the top search terms for November and December from its straight and gay theaters in all 50 states and the District of Columbia.

X3 Expo Day 2 Delivers Stars, Screenings and Fan Favorites

The sun once again shone brightly on the historic Hollywood Palladium as throngs of avid fans made their way through the doors, ready to experience Day 2 of the 2026 X3 Expo.

X3 Expo Kicks Into Gear With an All-Star Lineup

Outside the historic Hollywood Palladium on Friday, a huge crowd of fans lined Sunset Boulevard, eagerly awaiting the opening of the 2026 X3 Expo and their big chance to meet the cream of the crop of adult stars.

2026 XBIZ Honors Salutes Resilience Across the Online Adult Industry

The 2026 XBIZ Honors packed house Wednesday night, turning the Kimpton Everly Hotel’s Nichols Ballroom into a gala celebration of industry excellence.

Elevated X Integrates CCBill for Payment Processing

Elevated X has added CCBill payment processing integration to its ELXNexus traffic management and affiliate software.

Florida Congressman Files Latest Bill to Repeal Section 230

Rep. Jimmy Patronis of Florida has become the latest member of Congress to propose legislation that would repeal Section 230 of the Communications Decency Act, which protects interactive computer services — including adult platforms — from liability for user-generated content.

Show More