Cатсн²² (in)sесuяitу / ChrisJohnRiley

Because we're damned if we do, and we're damned if we don't!

Tag Archives: oracle

[Defcon] Hacking Oracle From Web Apps

Hacking Oracle From Web Apps – Sumit Siddharth Exploitation techniques for exploit SQL Injection attacks on Web Applications with Oracle databases Because it’s Defcon… and we love SQL Injection! No free tools for hacking Oracle Databases from the web Even commercial tools like Pangolin have outdated techniques Oracle Privileges Oracle comes with a number of [...]

Blackhat Europe: Oracle, Interrupted: Stealing Sessions and Credentials

Oracle, Interrupted: Stealing Sessions and Credentials (Steve Ocepak & Wendel G. Henrique) Abstract (source: Blackhat.com) In a world of free, ever-present encryption libraries, many penetration testers still find a lot of great stuff on the wire. Database traffic is a common favorite, and with good reason: when the data includes PAN, Track, and CVV, it [...]

Follow

Get every new post delivered to your Inbox.