Personal Banking

Security Tip: Java Exploits

What is Java?

Java is a computer language that allows programmers and application developers to write software that can run on many different operating systems.  Many applications and websites require end-users to have Java installed.  Websites incorporate Java applets (small applications) to enhance the usability and functionality of a website.  In general, when a user visits one of these websites, depending on their browser’s security settings, they may have no idea that the Java applet is automatically running.

End-users typically have “Java Runtime Environment” (JRE) installed on their computer.  In many instances, this software was pre-installed on their computer.  More recently, this practice is becoming less common.  If JRE is not installed on your computer, and you visit a website that requires JRE, generally, you will be prompted to install JRE.

What are the Risks with Java?

Java is designed to work on almost any computer.  Java has been prone to numerous reports of vulnerabilities. Cyber criminals can create a single attack tool that can potentially hack almost any computer in the world. According to the SecureList IT Threat Evolution Report released by Kaspersky Lab in May 2013, “The most widespread vulnerabilities are found in Java and [the vulnerabilities] were detected on 45% of all computers.”1

These attacks are based, at least in part, on older versions of Java. When a newer version of Java is released and installed on a machine, the older version may not automatically be uninstalled. This was intended to provide an easy way to roll back to an older version in case of compatibility issues. Attacks can be used by hackers to leverage and to exploit the vulnerabilities that exist in those versions. This makes Java’s weaknesses an attractive target for hackers and cyber criminals.   

How Can I Mitigate Java Exploits?

  • Set the Java security level to “High” or “Very High”. The most recent versions of Java have the ability to manage when and how untrusted Java applications/applets will run. You can set the security level from within the Java Control Panel so that you are notified before any untrusted Java applications run. Visit: http://www.java.com/en/download/help/jcp_security.xmlfor instructions on setting the Java security level.
  • Do not allow applications from unknown publishers to run.

For More Information:

What is Java?
https://en.wikipedia.org/wiki/Java_(programming_language)

Java Security Resources
http://www.java.com/en/security/

Uninstalling Java on Windows
http://www.java.com/en/download/uninstall.jsp

Uninstalling Java on Mac
https://www.java.com/en/download/help/mac_uninstall_java.xml

Disabling Your Browser’s Java Plugin
https://krebsonsecurity.com/how-to-unplug-java-from-the-browser/

1http://www.securelist.com/en/analysis/204792292/IT_Threat_Evolution_Q1_2013

Back to Top

Bank Among Friends
Disclaimer
No
Yes

The Fair Housing Act prohibits discrimination in housing because of:

Mission

Enforce the Fair Housing Act and other civil rights laws to ensure the right of equal housing opportunity and free and fair housing choice without discrimination based on race, color, religion, sex, national origin, disability or family composition.

Major Goals

1. Reduce discrimination in housing by doubling the Title VIII case load by the end of 2000 through aggressive enforcement of civil rights and fair housing laws;

2. Promote geographic mobility for low-income and minority households;

3. Integrate fair housing plans into HUD's Consolidated Plans;

4. Further fair housing in other relevant programs of the Federal government; and

5. Promote substantial equivalency among state, local and community organizations involved in providing housing.