<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Three Tier Oracle Security in London ~ Paul M. Wright</title>
	<atom:link href="http://www.oracleforensics.com/wordpress/index.php/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.oracleforensics.com/wordpress</link>
	<description>ORACLE SECURITY AND COMPUTER FORENSICS</description>
	<lastBuildDate>Tue, 16 Mar 2010 19:49:56 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Oracle and Google Nexus</title>
		<link>http://www.oracleforensics.com/wordpress/index.php/2010/03/15/oracle-and-google-nexus/</link>
		<comments>http://www.oracleforensics.com/wordpress/index.php/2010/03/15/oracle-and-google-nexus/#comments</comments>
		<pubDate>Mon, 15 Mar 2010 00:59:53 +0000</pubDate>
		<dc:creator>Paul Wright</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.oracleforensics.com/wordpress/?p=512</guid>
		<description><![CDATA[Hi All,
Nice paper from Pete on Sentrigo Hedgehog usage which also references the Java vulnerability work by David.
I noticed that David&#8217;s 11g presentation is up at YouTube http://www.youtube.com/watch?v=IZq3D2pvyNE ~ I have already seen the vulnerability being adapted to provide other CREATE SESSION to DBA escalations not yet published&#8230; this research is opening the door to [...]]]></description>
		<wfw:commentRss>http://www.oracleforensics.com/wordpress/index.php/2010/03/15/oracle-and-google-nexus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>sec_return_server_release_banner Secure by Default?</title>
		<link>http://www.oracleforensics.com/wordpress/index.php/2010/03/08/sec_return_server_release_banner-secure-by-default/</link>
		<comments>http://www.oracleforensics.com/wordpress/index.php/2010/03/08/sec_return_server_release_banner-secure-by-default/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 00:11:43 +0000</pubDate>
		<dc:creator>Paul Wright</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.oracleforensics.com/wordpress/?p=503</guid>
		<description><![CDATA[Hello World,
Congratulations to Sentrigo for being nominated again in the SC Awards in the US for Hedgehog.
http://www.scmagazineus.com/scawards2010-finalists/section/1309/
Just came across an ex-colleague from Pentest Ltd named Simon Fletcher who has started a blog on Oracle Security.
http://blog.fifteentwentyone.co.uk/2010/02/sql92security.html
Nice post and good luck with the new blog. Oracle config issues like these are interesting for already very highly secured [...]]]></description>
		<wfw:commentRss>http://www.oracleforensics.com/wordpress/index.php/2010/03/08/sec_return_server_release_banner-secure-by-default/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>E-Business Suite Security and DBMS_LDAP.INIT</title>
		<link>http://www.oracleforensics.com/wordpress/index.php/2010/03/01/e-business-suite-security-and-dbms_ldap-init/</link>
		<comments>http://www.oracleforensics.com/wordpress/index.php/2010/03/01/e-business-suite-security-and-dbms_ldap-init/#comments</comments>
		<pubDate>Mon, 01 Mar 2010 01:23:22 +0000</pubDate>
		<dc:creator>Paul Wright</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.oracleforensics.com/wordpress/?p=471</guid>
		<description><![CDATA[Hi Folks,
Vulnerability in E-Business Suite R12 requires non-default diagnostics mode so Low risk.
http://www.securityfocus.com/archive/1/509460
Having said that it is worth keeping an eye on Internet facing Oracle applications, though there is not a huge amount on this from O&#8217;Reilly and Apress.
Google books has a relevant book free of charge named &#8220;Security, Audit and Control Features Oracle E-Business [...]]]></description>
		<wfw:commentRss>http://www.oracleforensics.com/wordpress/index.php/2010/03/01/e-business-suite-security-and-dbms_ldap-init/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
