<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Musings on Database Security</title>
	
	<link>http://www.slaviks-blog.com</link>
	<description>Slavik's Blog</description>
	<lastBuildDate>Sun, 07 Mar 2010 22:41:56 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/slaviks-blog/WxxD" /><feedburner:info uri="slaviks-blog/wxxd" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId>slaviks-blog/WxxD</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item>
		<title>Oracle TNS Resend Packet</title>
		<link>http://feedproxy.google.com/~r/slaviks-blog/WxxD/~3/dZrKMcdbfGE/</link>
		<comments>http://www.slaviks-blog.com/2010/03/07/oracle-tns-resend-packet/#comments</comments>
		<pubDate>Sun, 07 Mar 2010 22:41:56 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[Oracle]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=252</guid>
		<description>As you can see here, the Python code handles a specific case of Oracle TNS layer requesting a RESEND of the last packet. I&amp;#8217;ve noticed that no matter what client I&amp;#8217;m trying to connect with, Oracle is always requesting a RESEND after the initial CONNECT request as you can see here (removed various ACK packets, [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?a=dZrKMcdbfGE:nOzKmGreYsM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/slaviks-blog/WxxD/~4/dZrKMcdbfGE" height="1" width="1"/&gt;</description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/03/07/oracle-tns-resend-packet/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		<feedburner:origLink>http://www.slaviks-blog.com/2010/03/07/oracle-tns-resend-packet/</feedburner:origLink></item>
		<item>
		<title>SC Magazine awards dinner</title>
		<link>http://feedproxy.google.com/~r/slaviks-blog/WxxD/~3/ztWvU08_GUw/</link>
		<comments>http://www.slaviks-blog.com/2010/03/05/sc-magazine-awards-dinner/#comments</comments>
		<pubDate>Sat, 06 Mar 2010 01:41:36 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[sentrigo]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=248</guid>
		<description>We had a great time at the SC magazine awards dinner on Tuesday. We were finalists in the &amp;#8220;best SME security solution&amp;#8221; category but unfortunately we did not win.
Here is Andy, our VP marketing before the dinner and announcements:

And here he is after some wine and us not winning:&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?a=ztWvU08_GUw:3QOWByIdzds:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/slaviks-blog/WxxD/~4/ztWvU08_GUw" height="1" width="1"/&gt;</description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/03/05/sc-magazine-awards-dinner/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.slaviks-blog.com/2010/03/05/sc-magazine-awards-dinner/</feedburner:origLink></item>
		<item>
		<title>RSA Conference 2010 – Linux WIFI users</title>
		<link>http://feedproxy.google.com/~r/slaviks-blog/WxxD/~3/5d9-QMAEelQ/</link>
		<comments>http://www.slaviks-blog.com/2010/03/02/rsa-conference-2010-linux-wifi-users/#comments</comments>
		<pubDate>Tue, 02 Mar 2010 19:42:00 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[RSA]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=246</guid>
		<description>So, I arrived to Moscone Center a bit late for the first cloud security alliance session. It turns out that there was a huge line to enter and a lot of people were left outside.
Having a free 1.5 hours, I wanted to connect and check emails. I&amp;#8217;ve already received my password so I thought it [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?a=5d9-QMAEelQ:_yQuPLHD1fQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/slaviks-blog/WxxD/~4/5d9-QMAEelQ" height="1" width="1"/&gt;</description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/03/02/rsa-conference-2010-linux-wifi-users/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://www.slaviks-blog.com/2010/03/02/rsa-conference-2010-linux-wifi-users/</feedburner:origLink></item>
		<item>
		<title>Enumerate Oracle SIDs</title>
		<link>http://feedproxy.google.com/~r/slaviks-blog/WxxD/~3/wy-kF7scv8c/</link>
		<comments>http://www.slaviks-blog.com/2010/02/26/enumerate-oracle-sids/#comments</comments>
		<pubDate>Fri, 26 Feb 2010 20:37:00 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[Oracle]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=241</guid>
		<description>As promised, here is a small Python script to allow you to enumerate and find Oracle SIDs.
Of course, the usual caveats apply &amp;#8211; if it breaks something, I&amp;#8217;m not responsible   Use at your own risk. I&amp;#8217;m using the sidlist.txt file from David&amp;#8217;s OAK but there are plenty of available resources with common SID [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?a=wy-kF7scv8c:xmBzoInu5RY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/slaviks-blog/WxxD/~4/wy-kF7scv8c" height="1" width="1"/&gt;</description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/02/26/enumerate-oracle-sids/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		<feedburner:origLink>http://www.slaviks-blog.com/2010/02/26/enumerate-oracle-sids/</feedburner:origLink></item>
		<item>
		<title>Exploiting Oracle from the web whitepaper</title>
		<link>http://feedproxy.google.com/~r/slaviks-blog/WxxD/~3/2L32ck_Ws2o/</link>
		<comments>http://www.slaviks-blog.com/2010/02/22/exploiting-oracle-from-the-web-whitepaper/#comments</comments>
		<pubDate>Tue, 23 Feb 2010 02:47:00 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[Oracle]]></category>
		<category><![CDATA[SQL*Plus]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[SQL injection]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=239</guid>
		<description>Sumit Siddarth (Sid) has published an excellent whitepaper talking about hacking Oracle from the web. It shows many types and techniques of SQL injection and how to use an SQL injection vulnerability as a jumping point to extract data, take control of the database and even escape the database to the OS.
Security folks and DBAs [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?a=2L32ck_Ws2o:z9sSaOHdlo8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/slaviks-blog/WxxD/~4/2L32ck_Ws2o" height="1" width="1"/&gt;</description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/02/22/exploiting-oracle-from-the-web-whitepaper/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.slaviks-blog.com/2010/02/22/exploiting-oracle-from-the-web-whitepaper/</feedburner:origLink></item>
		<item>
		<title>RMOUG presentation</title>
		<link>http://feedproxy.google.com/~r/slaviks-blog/WxxD/~3/Rd8Uv3XthWw/</link>
		<comments>http://www.slaviks-blog.com/2010/02/19/rmoug-presentation/#comments</comments>
		<pubDate>Fri, 19 Feb 2010 18:30:32 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[OUG]]></category>
		<category><![CDATA[Oracle]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=231</guid>
		<description>I had a great time at RMOUG this year. Did one of my usual presentation about attack vectors on the database and how to defend against them. I think the presentation was well received and the attendees loved the demos &amp;#8211; I mostly just demonstrate instead of going through slides.
One of my favorite demos is [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?a=Rd8Uv3XthWw:EArcZEX-4jM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/slaviks-blog/WxxD?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/slaviks-blog/WxxD/~4/Rd8Uv3XthWw" height="1" width="1"/&gt;</description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/02/19/rmoug-presentation/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		<feedburner:origLink>http://www.slaviks-blog.com/2010/02/19/rmoug-presentation/</feedburner:origLink></item>
	</channel>
</rss><!-- Dynamic Page Served (once) in 2.123 seconds --><!-- Cached page served by WP-Cache -->
