Breaking News

ASUS Unveils Mac-Friendly Features on ProArt Displays to Enhance Workflows Ricoh announces GR IV Monochrome Acer ProDesigner PE320QX monitor excels at tests! MSI announces Roamii BE Pro Mesh WiFi 7 System Samsung Mobile Gaming Hub Reshapes Personalized Play

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

Researcher finds new way to hack Oracle database

Researcher finds new way to hack Oracle database

Enterprise & IT Apr 25,2008 0

Security researcher David Litchfield has released technical details of a new type of attack that could give a hacker access to an Oracle database. Called a lateral SQL injection, the attack could be used to gain database administrator privileges on an Oracle server in order to change or delete data or even install software, Litchfield said in an interview on Thursday.

Litchfield first disclosed this type of attack at the Black Hat Washington conference last February, but on Thursday he published a paper with technical details.

In a SQL injection, attackers create specially crafted search terms that trick the database into running SQL commands. Previously, security experts thought that SQL injections would work only if the attacker was inputting character strings into the database, but Litchfield has shown that the attack can work using new types of data, known as date and number data types.

Litchfield's attack targets the Procedural Language/SQL programming language used by Oracle developers.

Oracle did not return so far a comment.

Tags: oracle
Previous Post
Dell to factory-install Windows XP after June 30
Next Post
Pioneer and Matsushita Reach Basic Agreement on PDP Business

Related Posts

  • Cloud Service Demand Boost Oracle's Results

  • Oracle Expands Its Datacenter Infrastructure in Five New Regions Worldwide

  • Research Firm Sees a Possible Amazon-Oracle Merger

  • Oracle Expands Database Offerings

  • Microsoft and Oracle to Interconnect Microsoft Azure and Oracle Cloud

  • Oracle Accuses Google of Snooping Users

  • Mozilla Asks Supreme Court to Support Google in Case Against Oracle

  • Google asks U.S. Supreme Court to end Oracle copyright case

Latest News

ASUS Unveils Mac-Friendly Features on ProArt Displays to Enhance Workflows
Enterprise & IT

ASUS Unveils Mac-Friendly Features on ProArt Displays to Enhance Workflows

Ricoh announces GR IV Monochrome
Cameras

Ricoh announces GR IV Monochrome

Acer ProDesigner PE320QX monitor excels at tests!
GPUs

Acer ProDesigner PE320QX monitor excels at tests!

MSI announces Roamii BE Pro Mesh WiFi 7 System
Enterprise & IT

MSI announces Roamii BE Pro Mesh WiFi 7 System

Samsung Mobile Gaming Hub Reshapes Personalized Play
Smartphones

Samsung Mobile Gaming Hub Reshapes Personalized Play

Popular Reviews

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

Terramaster F8-SSD

Terramaster F8-SSD

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

Soundpeats Pop Clip

Soundpeats Pop Clip

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed