Cybersecurity News

Filters
Tag
Reset

Filtered by tag: oracle database × Clear

Inside an Oracle Database SQL Injection Attack | Huntress

Attackers exploited a SQL injection vulnerability in an Oracle Database-connected application to achieve full OS-level remote code execution. By abusing Oracle's built-in Java functionality, they compiled and executed malicious Java source code directly within the database, ultimately deploying the Khunt post-exploitation toolkit for further access and lateral movement.