Sunday, March 10, 2013

Who really profits from vulnerable Java?

What another Java update? They are almost as frequent as blogs complaining about Java updates.  
However,  few seem to consider the real value of theses vulnerabilities and their subsequent patches.  Value to?  consumers? fuzzers?  Security?
People seem to be looking right past the profit model for java exploits to Oracle.  I hear often in the infosec community "it would suck to Oracle"  or "why dont they clean up their filthu bug ridden code.?"

To put it simply ,  they profit from every patch release.  They load up the not so savvy consumers with bloatware,  adware,  and just plain crap with each Java update.   I am still trying to find the exact relationship between Ask and Oracle.  And what the per install payout is. 

No comments:

Post a Comment