Database Administration with Style!

Database Diva Presents: Security Tutorials for Overworked Oracle™ Database Administrators

Oracle News Feeds From Other Sites

Pete Finnigan's Oracle security weblog

Pete Finnigan's Oracle security weblog

PeteFinnigan.com's weblog is the only weblog dedicated to Oracle security.


02/04/2012 08:00 PM
More oradebug

Alex commented on my post about " oradebug " about the select statement on x$ksmfsv which holds a list of all fixed variables amongst other things and joined it to x$ksmmem to get the absolute address in the SGA to....[Read More]

Posted by Pete On 21/09/11 At 07:26 PM


02/04/2012 08:00 PM
oradebug

Laszlo has published his slides from Hacktivity in Budapest last weekend where he shows how the Oracle undocumented oradebug command can be used to exploit the database; covering turning off authentication, turning off audit and more. His slides are here....[Read More]

Posted by Pete On 21/09/11 At 12:54 PM


02/04/2012 08:00 PM
UKOUG Oracle Data Security Day presentation slides available

I spoke at the UKOUG special security day event last week at Bletchley Park just outside of Milton Keynes. We had a great agenda for the day which was focused on Data Security. We had Ian Glover of CREST and....[Read More]

Posted by Pete On 19/09/11 At 04:07 PM


02/04/2012 08:00 PM
Oracle Security Training in Denver, USA

Ron Reidy will be teaching my 2 day class " how to perform a security audit of an Oracle database " in Denver, CO, USA on November 10th and November 11th 2011. The class is a public course so if....[Read More]

Posted by Pete On 06/09/11 At 09:49 AM


02/04/2012 08:00 PM
Cursor variable and global cursors security issues

I noticed a few days ago that David Litchfield had posted two new short papers on Oracle security; one is related to global cursors declared in PL/SQL packages, the other about cursor variable type SYS_REFCURSOR being passed out of functions/procedures....[Read More]

Posted by Pete On 06/07/11 At 01:20 PM



Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 780

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 781

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 782

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 783



Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 780

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 781

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 782

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 783


Last update 07/05/2006

Oracle, JD Edwards, PeopleSoft, and Siebel are registered trademarks of Oracle Corporation and/or its affiliates.