Sunday, September 21, 2014
Search
  
Submit your own News for
inclusion in our Site.
Click here...
Breaking News
New Oculus 'Crescent Bay' Headset Announced
Microsoft Offers iPhone Users 30 GB of Free Storage
New Tizen Device Coming in India
Samsung Launches My Knox App For Latest Mobile Device
Android L To Support Encryption By Default
Microsoft Outlines Basic Elements Of Direct3D 12
New GeForce WHQL Driver Released
Panasonic and Leica Expand Partnership Agreement
Active Discussions
Yamaha CRW-F1UX
help questions structure DVDR
Made video, won't play back easily
Questions durability monitor LCD
Questions fungus CD/DVD Media, Some expert engineer in optical media can help me?
CD, DVD and Blu-ray burning for Android in development
IBM supercharges Power servers with graphics chips
Werner Vogels: four cloud computing trends for 2014
 Home > News > General Computing > Researc...
Last 7 Days News : SU MO TU WE TH FR SA All News

Friday, April 25, 2008
Researcher finds new way to hack Oracle database


Security researcher David Litchfield has released technical details of a new type of attack that could give a hacker access to an Oracle database.

Called a lateral SQL injection, the attack could be used to gain database administrator privileges on an Oracle server in order to change or delete data or even install software, Litchfield said in an interview on Thursday.

Litchfield first disclosed this type of attack at the Black Hat Washington conference last February, but on Thursday he published a paper with technical details.

In a SQL injection, attackers create specially crafted search terms that trick the database into running SQL commands. Previously, security experts thought that SQL injections would work only if the attacker was inputting character strings into the database, but Litchfield has shown that the attack can work using new types of data, known as date and number data types.

Litchfield's attack targets the Procedural Language/SQL programming language used by Oracle developers.

Oracle did not return so far a comment.


Previous
Next
Dell to factory-install Windows XP after June 30        All News        Pioneer and Matsushita Reach Basic Agreement on PDP Business
Dell to factory-install Windows XP after June 30     General Computing News      Microsoft Leaves MSN Music Subscribers in Cold

Source Link Get RSS feed Easy Print E-Mail this Message

Related News
Oracle's Ellison Steps Down
Oracle To Buy Micros Systems
Oracle Accelerates Its Databases
Oracle Wins Appeal In Legal Battle With Google
Microsoft Retains No. 1 Spot; Oracle Moves Into No. 2 In Global Software Market
Oracle Buys Responsys For $1.5 billion
IBM, Oracle, EMC To Face China Probe Over Security Concerns: report
ARM and Oracle to Optimize Java SE for Enterprise and Embedded Markets
Microsoft and Oracle Team Up On Cloud Computing
Oracle Unveils Faster Servers
New Emergency Fix Releaseed For Java zero-day Exploit Released
New Critical Patch For Java SE Released

Most Popular News
 
Home | News | All News | Reviews | Articles | Guides | Download | Expert Area | Forum | Site Info
Site best viewed at 1024x768+ - CDRINFO.COM 1998-2014 - All rights reserved -
Privacy policy - Contact Us .