Subversion
Written by: Lorna Jane Mitchell
Featured Refcardz: Top Refcardz:
  1. Git
  2. DNS
  3. Data Mining
  4. Spring Data
  5. Subversion
  1. Spring Data
  2. Subversion
  3. Spring Config.
  4. Spring Annotations
  5. Data Mining

Link Details

Link 34135 thumbnail
User 1 avatar

By rick
via hackademix.net
Published: Aug 08 2007 / 19:49

This full-screen takeover applet was clearly not what Sun had in mind when they thought up "write once, run anywhere!" The demo is not dangerous, but it sure is scary!
  • 37
  • 3
  • 4864
  • 1

Comments

Add your comment
User 239166 avatar

Tieko replied ago:

0 votes Vote down Vote up Reply

Pure(tm) but doesn't work(tm). haha(tm)!

User 133619 avatar

murban replied ago:

0 votes Vote down Vote up Reply

I'm curious as to what combination of java / browser / os you tried it on where it didn't work? It did work on the stuff I tested it on.

User 164228 avatar

lipe775 replied ago:

0 votes Vote down Vote up Reply

Jesus f christ.

User 133619 avatar

murban replied ago:

0 votes Vote down Vote up Reply

I think the author of the blog entry has blown the seriousness of the problem way out of proportion though. It is more of an annoyance than anything else that might force you to close your browser if someone were to use it maliciously. I don't see any direct security consequences of it. And I think the possibility that you could use it to trick a user into revealing private information is pretty remote. Still, obviously it is something Sun needs to fix.

User 75351 avatar

stavares replied ago:

0 votes Vote down Vote up Reply

Based on a series of post by Rick, I'm starting to wonder whether or not the founder of the javalobby is still pro Java. There nothing 'scary' about this, other than it seems that some people want it to be. I have no problem with people who are pro Java alerting the community to issues like this, but frame it in the way it is in this post is just shameful.

User 1 avatar

rick replied ago:

0 votes Vote down Vote up Reply

Don't overinterpret. DZone is not partisan, and has no agenda other than to convey links that will likely be of interest to developers. If I see something that interests me, I usually post it (except that someone else almost always already has!)

This was clearly an interesting link, and one that warrants being broadly passed around. It isn't something I would hold back in order to avoid people thinking there's something scary in Java.

Rick

Add your comment


Html tags not supported. Reply is editable for 5 minutes. Use [code lang="java|ruby|sql|css|xml"][/code] to post code snippets.