Apache-Talk @lexa.ru 

Inet-Admins @info.east.ru 

Filmscanners @halftone.co.uk 

Security-alerts @yandex-team.ru 

nginx-ru @sysoev.ru 




      :: Security-alerts
Security-Alerts mailing list archive (security-alerts@yandex-team.ru)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[security-alerts] FW: Hacking Databases for owning your data (paper)

> -----Original Message-----
> From: dbsec-bounce@xxxxxxxxxxxxx 
> [mailto:dbsec-bounce@xxxxxxxxxxxxx] On Behalf Of Cesar
> Sent: Friday, April 13, 2007 3:29 AM
> To: dbsec@xxxxxxxxxxxxx
> Subject: [dbsec] [Argeniss] Hacking Databases for owning your 
> data (paper)
> Abstract:
> Data theft is becoming a major threat, criminals have
> identified where the money is. In the last years many
> databases from fortune 500 companies were compromised
> causing lots of money losses. This paper will discuss
> the data theft problem focusing on database attacks,
> we will show actual information about how serious the
> data theft problem is, we will explain why you should
> care about database security and common attacks will
> be described, the main part of the paper will be the
> demonstration of unknown and not well known attacks
> that can be used or are being used by criminals to
> easily steal data from your databases, we will focus
> on most used database servers: MS SQL Server and
> Oracle Database, it will be showed how to steal a
> complete database from Internet, how to steal data
> using a database rootkit and backdoor and some
> advanced database 0day exploits. We will demonstrate
> that compromising databases is not big deal if they
> haven't been properly secured. Also it will be
> discussed how to protect against attacks so you can
> improve database security at your site.
> http://www.argeniss.com/research/HackingDatabases.zip
> (Tools and exploits included)
> Enjoy.
> Cesar.
> ______________________________________________________________
> ______________________
> The fish are biting. 
> Get more visitors on your site using Yahoo! Search Marketing.
> http://searchmarketing.yahoo.com/arp/sponsoredsearch_v2.php


Copyright © Lexa Software, 1996-2009.