John Ives <aaaaaaaaa@hotmail.com> wrote:

> What I want to know is are there any known Spyware programs/Hijackers out
> there that install by using Java (maybe using a security weakness) or by
> some other similar means?


Yes. The most widely-used Java-related vulnerability is the ActiveXComponent
bug in IE, which has been used to install TinyBar and various other
home/search repeat-hijackers.

Another more recently exploited hole is the bytecode verifier bug in the
MS JVM; so far I've only seen this used to run plain hijackers (eg.
approvedlinks.com).

--
Andrew Clover
mailto:and@doxdesk.com
http://www.doxdesk.com/