Listen "Esteban Martinez Fayo: Advanced SQL Injection in Oracle Databases"
Episode Synopsis
This presentation shows new ways to attack Oracle Databases. It is focused on SQL injection vulnerabilities and how can be exploited using new techniques. It also explains how to see the internal PL/SQL code that is vulnerable in Oracle built-in procedures and examples using recently discovered vulnerabilities. Buffer overflows, remote attacks using web applications and some ways to protect from these attacks also will be shown.
Esteban Martinez Fayo is a security researcher; he has discovered and helped to fix multiple security vulnerabilities in major vendor software products. He specializes in application security and is recognized as the discoverer of most of the vulnerabilities in Oracle server software.
Esteban currently works for Argeniss doing information security research and developing security related software solutions for Application Security Inc.
Esteban Martinez Fayo is a security researcher; he has discovered and helped to fix multiple security vulnerabilities in major vendor software products. He specializes in application security and is recognized as the discoverer of most of the vulnerabilities in Oracle server software.
Esteban currently works for Argeniss doing information security research and developing security related software solutions for Application Security Inc.
More episodes of the podcast Black Hat Briefings, Las Vegas 2005 [Video] Presentations from the security conference
Akshay Aggarwal: Rapid Threat Modeling
04/06/2006
Panel: The Future of Personal Information
04/06/2006
Darrin Barrall: Shakespearean Shellcode
04/06/2006
Renaud Bidou: A Dirty BlackMail DoS Story
04/06/2006
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.