0
4

[–] arrggg 0 points 4 points (+4|-0) ago 

You could allow those security holes on only one system and let people Remote Desktop into it to watch the videos. That or deploy a virtual machine with everything installed to watch the videos. Both of those things would allow you to keep flash and java off the main systems.

0
4

[–] 4221491? 0 points 4 points (+4|-0) ago 

Keep flash up to date.

Javascript is not Java, so if they don't need Java, uninstall it, or turn off "flash in the browser" checkbox in Java settings.

Use something like Firefox with NoScript and whitelist only the training domains.