• IP addresses are NOT logged in this forum so there's no point asking. Please note that this forum is full of homophobes, racists, lunatics, schizophrenics & absolute nut jobs with a smattering of geniuses, Chinese chauvinists, Moderate Muslims and last but not least a couple of "know-it-alls" constantly sprouting their dubious wisdom. If you believe that content generated by unsavory characters might cause you offense PLEASE LEAVE NOW! Sammyboy Admin and Staff are not responsible for your hurt feelings should you choose to read any of the content here.

    The OTHER forum is HERE so please stop asking.

Oracle database can be hacked

  • Thread starter Thread starter General Veers
  • Start date Start date
G

General Veers

Guest
Tech and Science
Home > Breaking News > Tech and Science > Story
Feb 4, 2010

Oracle database can be hacked

<!-- by line --> <!-- end by line --> BOSTON - A COMPUTER security expert has uncovered what he says are flaws in widely used software from Oracle Corp that could let hackers remotely access sensitive information in corporate and government databases. A bug in the design of the Oracle database - the world's top-selling software for storing electronic information - could allow hackers to break into private databases via the Internet, said David Litchfield, chief research scientist of NGSSoftware Ltd, a UK-based computer security company.

'It allows an attacker without a user ID and password to take complete control. All firewalls become irrelevant,' Mr Litchfield said on Wednesday after presenting his research at the Black Hat hacking conference in Washington. Mr Litchfield said that he warned Oracle of the problem in November, hoping that the company would fix the flaw when it issued a group of quarterly security patches in January. He said that he decided to go public because Oracle failed to do so.

Mr Litchfield said that he believes about nine out of every 10 Oracle databases are vulnerable to attack. He said it is possible to change the default settings on Oracle's software to thwart potential hackers looking to exploit the vulnerability. He added that it was impossible to say whether any hackers had actually exploited the flaw to illegally break into a database. -- REUTERS


 
Back
Top