Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Breakable
Kevin Poulsen, SecurityFocus 2002-01-16

A U.K. security expert is preparing to unveil a trove of serious vulnerabilities in Oracle's database products. Can the company redefine 'unbreakable' in time?

Comments Mode:
14 evaluations missed what 1 guy found... 2002-01-16
Anonymous (5 replies)
14 evaluations missed what 1 guy found... 2002-01-17
Brad C. Johnson, Vice President, SystemExperts Corp.
Not just some guy 2002-01-17
BLKMGK
PGU 2002-01-16
Anonymous (1 replies)
PGU 2002-01-17
Anonymous
Breakable 2002-01-17
Anonymous (2 replies)
Breakable 2002-01-17
KZ
Breakable 2002-01-17
Anonymous
Schneier is right 2002-01-17
Anonymous (1 replies)
Schneier is right 2002-01-17
Brad C. Johnson, Vice President, SystemExperts Corp.
Breakable 2002-01-17
drama at slakin d0t n3t (1 replies)
Breakable 2002-01-17
Anonymous
What Oracle means by UnBreakable 2002-01-17
Anonymous (3 replies)
UnBreakable <- Can't break in? 2002-01-18
Anonymous
It also Says "Can't Break it, Can't break IN." That means that it's resistant to attempts to break in. That is the issue at hand. I think it's great that oracle is taking a security initiative, but they shouldn't make false statements.

If you make any kind of interface with a database, (which is 100% neccessary since not all of our data entry folks are oracle experts), you will need to secure the application which has access to read and write to your DB. This proves that Oracle doesn't even understand it's own business model. That statement is too blanket and vague to cover all the coldfusion application developers that use oracle.

My Point: Security will never get to 100%, but you can get darn close if you keep on it. It's all about process.

Good luck

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/309/9975#9975
What Oracle means by UnBreakable 2002-01-18
Anonymous
enron 2002-01-17
kkr
Breakable 2002-01-17
Grizzly
Breakable 2002-01-17
Anonymous
Breakable 2002-01-17
Anonymous (1 replies)
Breakable 2002-01-18
Anonymous
Oracle9i = 0 Evaluations 2002-01-17
Ross
Breakable 2002-01-18
An ex-Oracle security guy (1 replies)
Breakable 2002-01-18
Anonymous
Breakable 2002-01-18
Anonymous
Breakable 2002-01-18
An Interested Party
Playing with words 2002-01-20
Tired guy







 

Privacy Statement
Copyright 2007, SecurityFocus