Get a Pentest and security assessment of your IT network.

News

Researcher Finds Flaws In Key Oracle Security Feature

Oracle’s new data redaction feature lets a database administrator selectively or fully redact or mask sensitive data in query results. David Litchfield, a well-known security researcher, tested the feature and found that it could be bypassed. An outside attacker also could access the redacted data via a Web-based SQL injection attack. Litchfeld: “It suggests they didn’t do an assessment on it before they shipped it. They didn’t [apparently perform] a penetration test on it””]

Source: https://www.darkreading.com/database-security/researcher-finds-flaws-in-key-oracle-security-feature

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2