Evilgrade is a  framework that injects fake updates in common tools like: Java, iTunes, mirc, etc..

This tool needs a MITM attack in order to modify the DNS traffic (ie. Dsniff), to point the update system to a fake web server.

video and  slides