Most Popular Stories
- 3 ways for CIOs to become business leaders
- Chrome 17's new features enhance speed, security
- FBI insists cloud providers meet strict security requirements
- Spotlight: Intel launches 520 Series solid-state drive
- Bug in Trendnet webcams exposes them to public viewing
- Multiple monitors makes some multitasking faster, easier
Events
- COMPTEL PLUS Spring 2012
April 15-18 — San Francisco, CA - Customer Engagement Technology World
March 28-29, 2012 — San Francisco - The AIIM Conference 2012
March 20-22, 2012 — San Francisco, CA - The AIIM Conference 2012
March 20-22, 2012 — San Francisco, CA
Sponsored Links
Free Newsletter
HOT TOPICS >> The tech world's top flops and fiascos of 2011 | Top 8 features in Windows 8 | Paul's Q&As
INDUSTRY >> Healthcare IT | Government IT | Financial Services IT | Biotech IT | Compliance IT
Free Newsletter
Latest News
Popular Topics
Whitepapers
- Whitepaper: Integrated Analytics and WCM Can Improve Performance & ROI
- Enterprise Digital Assistant Leverage in the Emerging Mobile Enterprise
- Enterprise Portals: Harnessing Portal Power
- Security Intelligence: Enabling Security Monitoring for Landscapes
- The Shortcut Guide to Secure, Managed File Transfer
- End-of-life solution management for mobile devices reduces MNCs' security, compliance and sustainability risks
Researchers offer tool to break into Oracle database systems
Security experts Chris Gates and Mario Ceballos plan to release tools for breaking into Oracle Database systems during their presentation on "Oracle Pentesting Methodology" at the Black Hat and Defcon hacker conferences next week.
The various attacks will be implemented as Metasploit auxiliary modules and seek to exploit vulnerabilities discovered in Oracle's flagship database product over the years. Metasploit is an open-source platform commonly used by security experts to run penetration tests on internal systems for the purpose of discovery and attack mitigation.
Gates told CNET that he has not contacted Oracle about his presentation, since the exploits that he will be presenting are not new and ways to mitigate them are already public.
"If administrators haven't applied the patches, then the databases were/are vulnerable," Gates told the website, noting that "These tools just help streamline the penetration testing process." Organizations serious about security will benefit by grabbing the modules once they are available and running the exploits against their own systems to ensure that all relevant patches have been installed.
For more on this story:
- check out this article at CNET News
Related Articles:
Court order puts a stop to Defcon talk on subway hacks
Hackers claim $10,000 prize for breaking into webmail
Just launched IE 8 successfully hacked

Mifare Classic RFID successfully hacked

MacBook Air 'PWNED' in 2 minutes flat
Related Stories
- Cisco, Apple patch security glitches
- Exploit circulating for newly patched Oracle bug
- Oracle patches 88 holes in security update
- User names and passwords of 1.3 million stolen in weekend Gawker Media hack
- SecPoint Portable Penetrator for Wi-Fi and penetration testing
- Java exploits at all time high, patch if you have not done so
- Many home routers could be vulnerable to web hack
- Security firm: Microsoft issued silent patches last month
- Adobe to push out new Acrobat security patches today
- Security conferences a draw to secret agents
Home
| Subscribe | Advertise | RSS |
Privacy
| Site Map
| EditorsTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2011 FierceMarkets. All rights reserved. |
![]() |




