Database Administration with Style!

Database Diva Presents: Security Tutorials for Overworked Oracle™ Database Administrators

Oracle News Feeds From Other Sites

Pete Finnigan's Oracle security weblog

Pete Finnigan's Oracle security weblog

PeteFinnigan.com's weblog is the only weblog dedicated to Oracle security.


01/07/2009 02:14 AM
New Year Oracle Security

First of all I would like to wish everyone a belated happy Christmas and a (not belated) very happy and successful new year. Blog entries and writing with a pen have been limited recently as I travelled a lot before....[Read More]

Posted by Pete On 31/12/08 At 02:45 PM


01/07/2009 02:14 AM
Pete Finnigan's presentation slides available from UKOUG conference

Wow; it has been a while since my last blog post. I do seem to start blog posts in the same way recently but it has been a very busy time for me recently. I was down at UKOUG last....[Read More]

Posted by Pete On 12/12/08 At 02:33 PM


01/07/2009 02:14 AM
Oracle forensics paper - part 7 and an Oracle datablock dump tool

I was actually just browsing for one of Davids recent forensics papers to mention them in an answer to a question on my Oracle Security forum about how to delete data completely and whether it is actually possible without rebuilding....[Read More]

Posted by Pete On 27/11/08 At 02:05 PM


01/07/2009 02:14 AM
Permissions required to run my PL/SQL Oracle password cracker

There was a question posted to my Oracle Security forum a week or so ago but i only got round to posting an answer the other day due to travelling a lot recently. The poster had an issue running my....[Read More]

Posted by Pete On 26/11/08 At 02:21 PM


01/07/2009 02:14 AM
A new exploit to bypass Oracle Database Vault has been released

I got an email from Jakub Wartak a few days ago but due to travelling last week in Sweden to teach my class " How to perform an Oracle database security audit " I have not had time to look....[Read More]

Posted by Pete On 24/11/08 At 05:54 PM



Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 780

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 781

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 782

Warning: date() expects parameter 2 to be long, string given in /home/dbdiva/public_html/rss2html.php on line 783
The Oracle Global Product Security Blog

The Oracle Global Product Security Blog


01/07/2009 02:14 AM
My Oracle Support and Oracle Configuration Manager
Hi! My name is Joshua Solomin. I am the Product Manager for Oracle Configuration Manager. Oracle recently launched its new Web support portal My Oracle Support (previously known as MetaLink). More than just providing a slick interface, the new site...
01/07/2009 02:14 AM
Training development staff in secure coding practices pays huge dividends
Hi, this is Evelyn Sell. I am a Senior Principal Program Manager in Oracle Global Product Security. My primary function is in the security compliance area, helping to ensure that the various development organizations follow Oracle Software Security Assurance policies....
01/07/2009 02:14 AM
October 2008 Critical Patch Update Released
Hi, this is Eric Maurice! Oracle today released the October 2008 Critical Patch Update (CPUOct2008). The Critical Patch Update (CPU) includes fixes for 36 new security vulnerabilities across a large number of products: Oracle Database Server, Oracle Application Server, Oracle...
01/07/2009 02:14 AM
Wiki Security – An Ethical Hacker Perspective
Hi, this is Andy Webber. I am an ethical hacker in Oracle Global Product Security I recently attended WikiSym2008. This conference was a great place to meet up with people interested in collaborative working and related technologies. I gave a...
01/07/2009 02:14 AM
Updated Security Alert for CVE-2008-3257 Issued
Hi, this is Eric Maurice again. Oracle today issued an updated Security Alert related to the previously reported vulnerability CVE-2008-3257. The purpose of this updated Security Alert is to let WebLogic customers know about the immediate availability of the fixes...
Oracle Security Alerts

Oracle Security Alerts

Security Alerts Issued by Oracle


10/15/2008 11:53 AM
Critical Patch Update - October 2008

07/15/2008 01:01 PM
Critical Patch Update - July 2008

04/15/2008 03:13 PM
Critical Patch Update - April 2008

01/15/2008 02:55 PM
Critical Patch Update - January 2008

10/16/2007 01:47 PM
Critical Patch Update - October 2007

Last update 07/05/2006

Oracle, JD Edwards, PeopleSoft, and Siebel are registered trademarks of Oracle Corporation and/or its affiliates.