On 4/17/2013 7:13 PM, Arne Vajh?j wrote:
[...]
Another statistic is the one from the original link:
"Java was the vehicle for 50 per cent of all cyber attacks last year in
which hackers broke into computers by exploiting software bugs,
according to Kaspersky. That was followed by Adobe Reader, which was
involved in 28 per cent of all incidents. Microsoft Windows and Internet
Explorer were involved in about 3 per cent of incidents, according to
the survey."
I suspect that a would-be penetrator would try a long list
of vulnerabilities on each system visited. Java vulnerabilities
would be particularly attractive, because they'd probably affect
many systems: Windows, Macs, Androids, UnameIts. Also, it seems
common (with all kinds of software) that a large percentage of
the vulnerable population lags "the latest and greatest" by more
than a few days ...
Yep.
http://www.zdnet.com/java-based-attacks-remain-at-large-researchers-say-7000013131/
has a little figure showing how bad it is.