Oracle is settling with the Federal Trade Commission over charges that it “deceived” its customers by failing to warn them about the security upgrades. Oracle has agreed to the settlement that is now subject to public comment for 30 days. Oracle was only upgrading the most recent version of the software and ignoring the older versions that were often chock full of security loopholes that could be exploited by hackers in order to hack a targeted PC. Oracle is required to notify Java customers about the issue via Twitter, Facebook, and its official website.
Source: https://thehackernews.com/2015/12/java-insecure-hacking.html

