<html><head>
<meta content="text/html; charset=ISO-8859-1" http-equiv="Content-Type">
</head><body bgcolor="#FFFFFF" text="#000000">It's gotten to the point 
where I've started recommending that my clients, those not on OSX at 
least, uninstall java or, at the very least, the java browser plugins. 
It's really sad that it's come to this but I really find it hard to 
trust it anymore.<br>
<br>
<blockquote style="border: 0px none;" 
cite="mid:506619B0.2010908@gmail.com" type="cite">
  <div style="margin:30px 25px 10px 25px;" class="__pbConvHr"><div 
style="display:table;width:100%;border-top:1px solid 
#EDEEF0;padding-top:5px">         <div 
style="display:table-cell;vertical-align:middle;padding-right:6px;"><img
 photoaddress="skotchman@gmail.com" photoname="Scott Castaline" 
src="cid:part1.00030201.03040903@techmachine.net" 
name="compose-unknown-contact.jpg" height="25px" width="25px"></div>   <div
 
style="display:table-cell;white-space:nowrap;vertical-align:middle;width:100%">
           <a moz-do-not-send="true" href="mailto:skotchman@gmail.com" 
style="color:#737F92 
!important;padding-right:6px;font-weight:bold;text-decoration:none 
!important;">Scott Castaline</a></div>   <div 
style="display:table-cell;white-space:nowrap;vertical-align:middle;">   
  <font color="#9FA2A5"><span style="padding-left:6px">September 28, 
2012 5:42 PM</span></font></div></div></div>
  <div style="color:#888888;margin-left:24px;margin-right:24px;" 
__pbrmquotes="true" class="__pbConvBody"><div>-----BEGIN PGP SIGNED 
MESSAGE-----<br>Hash: SHA1<br><br>This is getting old another 
compromised certificate and another hole<br>in JAVA.<br><br><a class="moz-txt-link-freetext" href="http://arstechnica.com/security/2012/09/adobe-to-revoke-crypto-key-abused-to-sign-5000-malware-apps/">http://arstechnica.com/security/2012/09/adobe-to-revoke-crypto-key-abused-to-sign-5000-malware-apps/</a><br><br><a class="moz-txt-link-freetext" href="http://www.darkreading.com/vulnerability-management/167901026/security/vulnerabilities/240008029/deja-vu-all-over-again-new-java-vulnerability-found-bypasses-built-in-security.html">http://www.darkreading.com/vulnerability-management/167901026/security/vulnerabilities/240008029/deja-vu-all-over-again-new-java-vulnerability-found-bypasses-built-in-security.html</a><br><br>Both
 links were in this afternoons SANS NewsBites<br><br><br>-----BEGIN PGP 
SIGNATURE-----<br>Version: GnuPG v1.4.12 (GNU/Linux)<br>Comment: Using 
GnuPG with Mozilla - <a class="moz-txt-link-freetext" href="http://www.enigmail.net/">http://www.enigmail.net/</a><br><br>iQIcBAEBAgAGBQJQZhmvAAoJEIefqZ0kni1d6gQP/2DAchNIBPMvQL3oFa6ujtxx<br>zDwDkyHuvnbXTxManYZwng8xeaXYgp7GJqf5Q9poA5kuIvmSqlvduZ/SrDBf+kRP<br>h/jGyl1AXTrTXhiAQdfck6TVLQ/AZoaFl6pSpHn5xaB4Q0Aa3EudE0aDPXDjl5k/<br>keWJ1ADGEl1u33Zoo4dJlHDXJJt1tT72O910MpIwvMmjNw+FG/3cKdKNyFyQzG1C<br>2G6IsQPllOE7CmAWF11e3KbfodW85ql7KoZ2NvCLjo32Orsct8gJUd+TvpTsDAl6<br>PSRU5c0At1HxKlM0pc2ccSZLmecyI4bCEYpvfZuiInK5f80MjbXTL7EV6Ws2Y6Gh<br>VgrO5a2s1xolUK5GY0uaiOBf/qHbw4GO+UMLR3n794z6PzKULeWbHHGVNPXY0kLf<br>kxWvpavCB7rjUPsZ2TMHH0PCrKGQnibC2iX/VamFFRFiej8/Lvq0vNEwUQB73BcJ<br>VB+tygvBuhXHHgG6s9Dfr9doi5upblm5Hj90kOmqcqfWuClHR9un8RcwA+lwDlse<br>BpLQGQKVcmEJPAdpXB/4NnxqIKvgCN95T0DsgplktSx5RN3T5ZWIY3Gm9K4WvFPU<br>NnLmK/TgkmEZEPpCLyf4BUiwS59xPp8w7sD/zEV7tXhfrnLU6cs73yvFBW9/Zrqn<br>v8f8ari8ArIa2uhpxk6F<br>=O68H<br>-----END
 PGP SIGNATURE-----<br>_______________________________________________<br>Ale
 mailing list<br><a class="moz-txt-link-abbreviated" href="mailto:Ale@ale.org">Ale@ale.org</a><br><a class="moz-txt-link-freetext" href="http://mail.ale.org/mailman/listinfo/ale">http://mail.ale.org/mailman/listinfo/ale</a><br>See
 JOBS, ANNOUNCE and SCHOOLS lists at<br><a class="moz-txt-link-freetext" href="http://mail.ale.org/mailman/listinfo">http://mail.ale.org/mailman/listinfo</a><br></div></div>
</blockquote>
</body></html>