A recently discovered Java vulnerability that s been circulating throughout the hacking underground has begun to show up alongside the BlackHole exploit kit. The vulnerability is found in the Java Runtime Environment Component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier builds. Those with the latest version of Java, Java 6 Update 29, or Java 7 Update 1, are not affected. Stumbling upon a vulnerability-laden site on Internet Explorer or Mozilla Firefox could trigger the installation of malware if users are running an out-of-date build.
Source: https://threatpost.com/new-java-vulnerability-coming-bundled-exploit-kits-112811/75931/

