Community

Oracle Security: All your DBAs are SYSDBAs and can have full OS access

(Tanel Poder) I was doing some low-level security research on Oracle 11g and realized that combining couple little known Oracle’s features can allow anyone with DBA or IMP_FULL_DATABASE rights run any OS command under the same privileges the Oracle processes are running. This allows an attacker to e

Read More - Register for Free Membership

Tags: