Oracle's Java security head: We will 'fix Java,' communicate better
Oracle is planning to step up its community outreach efforts around the programming language
IDG News Service - Oracle's head of Java security is promising the vendor will "fix" issues with the widely used programming language, as well as improve its outreach efforts to community members, following a spate of high-profile vulnerabilities.
"The plan for Java security is really simple," said Java security lead Milton Smith during a conference call this week with Java user group leaders. "It's to get Java fixed up, number one, and then number two, to communicate our efforts widely. We really can't have one without the other. No amount of talking or smoothing over is going to make anybody happy. We have to fix Java."
Oracle has been coming under fire recently from experts over what they say is an inability to properly patch vulnerabilities in Java.
Recently, the U.S. Department of Homeland Security even urged users to disable Java in their browsers. Most Java vulnerabilities of late have been at the browser level, according to Smith. "That's really the biggest target now."
Oracle, which gained control of Java through the acquisition of Sun Microsystems, has often been criticized for being tight-lipped in its public communications. But that label won't be fairly applied to the company's Java team moving forward, Smith said during the call, a recording of which was made publicly available through Oracle's website on Friday.
Smith and his peers "have a lot of things that we're looking at" with respect to communication, he said. One particular goal is to make sure Oracle is reaching all audiences, from consumer users to IT professionals running data centers to engineers, he said.
Exactly how this will be done hasn't been decided as of yet, but it could include more speeches at tech conferences as well as talking to the press, according to Smith.
Another possibility would be for Oracle to provide updates on security to Java user group leaders, who would then be able to share information with their members, he said.
Smith repeatedly underscored the importance of outreach to Oracle's Java security efforts.
For example, Oracle recently made "very significant" security improvements to Java, such as to prevent silent exploits, he said.
"But people don't understand those features yet," he said. "They're still pretty new."
Chris Kanaracus covers enterprise software and general technology breaking news for The IDG News Service. Chris' email address is Chris_Kanaracus@idg.com
- The 20 Best iPhone/iPad Games of 2013 So Far
- 9 Steps to Build Your Personal Brand (and Your Career)
- 7 Consumer Technologies Coming to an Enterprise Near You
- 11 Signs Your IT Project is Doomed
- A walking tour: 33 questions to ask about your company's security
- 15 social media scams
- The 7 elements of a successful security awareness program
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
- Security for Virtualization Learn more.
- When Malware Goes Mobile: Causes, Outcomes and Cures Cybercriminals are increasingly setting their sights on smartphones and other mobile devices. Learn about platform-specific policies and strategies you can employ to protect...
- Harness IT -- An Introduction to Business Intelligence Solutions Learn the key selection criteria required to provide your organization with the capability to address structured data, unstructured data and mobile demands so...
- Business Intelligence Shows its Smarts Today's Business Intelligence (BI) tools provide a new way to think about data with self-service capabilities and user-friendly analytics that can be used...
- Becoming An Analytics Driven Organization Join us on Tuesday, June 18, 2013, 11:00 AM EDT and learn how your agency can create an analytics culture that will enable...
- 3 Reasons Why Sepaton is the World's Fastest Backup Solution Leading analyst, Storage Switzerland learns how Sepaton backs up and deduplicates massive data volumes while maintaining the industry's fastest performance - all in... All Malware and Vulnerabilities White Papers | Webcasts