Thursday, July 31, 2014
Search
  
Submit your own News for
inclusion in our Site.
Click here...
Breaking News
Samsung Q3 Sales and Profits Down despite Galaxy S5 launch
Apple May lay Off People at Beats: report
Japanese Giants Form JOLED Company To Compete With LG, Samsung
BitTorrent U Secure Online Calling Software Bleep
Fujitsu Semiconductor and ON Semiconductor Announce Foundry Agreement
Kaleidescape Joins the One-Blue Licensing Program
AMD Opteron 64-Bit ARM-Based Developer Kits Now Available
Samsung Galaxy Note 4 Coming On September 3
Active Discussions
help questions structure DVDR
Made video, won't play back easily
Questions durability monitor LCD
Questions fungus CD/DVD Media, Some expert engineer in optical media can help me?
CD, DVD and Blu-ray burning for Android in development
IBM supercharges Power servers with graphics chips
Werner Vogels: four cloud computing trends for 2014
Video editing software.
 Home > News > General Computing > Researc...
Last 7 Days News : SU MO TU WE TH FR SA All News

Friday, April 25, 2008
Researcher finds new way to hack Oracle database


Security researcher David Litchfield has released technical details of a new type of attack that could give a hacker access to an Oracle database.

Called a lateral SQL injection, the attack could be used to gain database administrator privileges on an Oracle server in order to change or delete data or even install software, Litchfield said in an interview on Thursday.

Litchfield first disclosed this type of attack at the Black Hat Washington conference last February, but on Thursday he published a paper with technical details.

In a SQL injection, attackers create specially crafted search terms that trick the database into running SQL commands. Previously, security experts thought that SQL injections would work only if the attacker was inputting character strings into the database, but Litchfield has shown that the attack can work using new types of data, known as date and number data types.

Litchfield's attack targets the Procedural Language/SQL programming language used by Oracle developers.

Oracle did not return so far a comment.


Previous
Next
Dell to factory-install Windows XP after June 30        All News        Pioneer and Matsushita Reach Basic Agreement on PDP Business
Dell to factory-install Windows XP after June 30     General Computing News      Microsoft Leaves MSN Music Subscribers in Cold

Source Link Get RSS feed Easy Print E-Mail this Message

Related News
Oracle To Buy Micros Systems
Oracle Accelerates Its Databases
Oracle Wins Appeal In Legal Battle With Google
Microsoft Retains No. 1 Spot; Oracle Moves Into No. 2 In Global Software Market
Oracle Buys Responsys For $1.5 billion
IBM, Oracle, EMC To Face China Probe Over Security Concerns: report
ARM and Oracle to Optimize Java SE for Enterprise and Embedded Markets
Microsoft and Oracle Team Up On Cloud Computing
Oracle Unveils Faster Servers
New Emergency Fix Releaseed For Java zero-day Exploit Released
New Critical Patch For Java SE Released
Oracle Buys Acme Packet

Most Popular News
 
Home | News | All News | Reviews | Articles | Guides | Download | Expert Area | Forum | Site Info
Site best viewed at 1024x768+ - CDRINFO.COM 1998-2014 - All rights reserved -
Privacy policy - Contact Us .