Mon 22 Feb 2010
Exploiting Oracle from the web whitepaper
Posted by Slavik under Oracle, security, SQL*Plus
No Comments
Sumit Siddarth (Sid) has published an excellent whitepaper talking about hacking Oracle from the web. It shows many types and techniques of SQL injection and how to use an SQL injection vulnerability as a jumping point to extract data, take control of the database and even escape the database to the OS.
Security folks and DBAs out there, this is a must read!
No Responses to “ Exploiting Oracle from the web whitepaper ”