Cybersecurity News
Filters
Filtered by tag: oracle database × Clear
Inside an Oracle Database SQL Injection Attack | Huntress
Attackers exploited a SQL injection vulnerability in an Oracle Database-connected application to achieve full OS-level remote code execution. By abusing Oracle's built-in Java functionality, they compiled and executed malicious Java source code directly within the database, ultimately deploying the Khunt post-exploitation toolkit for further access and lateral movement.
