The Economic Times
Hackers will soon gain a powerful new tool for breaking into Oracle Corp's database, the top-selling business software used by companies to store electronic information.
Security experts have developed an easy-to-use, automated software tool that can remotely break into Oracle databases over the Internet to simulate attacks on computer systems, but cyber crooks can use it for hacking.
Metasploit
The tool's authors created it through a controversial open-source software project known as Metasploit, which releases its free software over the Web. This is the first Metasploit program to target Oracle's database.
"Anyone with no skill and knowledge can download and run it," said Pete Finnigan, an independent consultant who specializes in Oracle security and who advises large corporations and government agencies.
Oracle issues patches to protect against vulnerabilities
He has not yet studied the Oracle tool but is familiar with other Metasploit software and said it works by automating many of the complicated procedures required to hack into Oracle databases, allowing amateurs to hack into them.
Oracle, which declined to comment, has already issued patches to protect against vulnerabilities that the Metasploit tool targets. But some companies are not diligent in upgrading their software to add the patches, so they are vulnerable to attackers using the new tool. They hire consultants like Gates to help them make sure they are protected.
Metasploit hacks are available for other software programs
Metasploit hacks are available for other software programs, including Microsoft Corp's Windows as well as the Firefox and Internet Explorer browsers.
"There is no way to keep these tools out of the hands of people who want to use them for nefarious purposes," said Alan Paller, director of research for the SANS Institute. SANS trains security professionals in areas including use of Metasploit.
Metasploit is easier to operate
Security testers and hackers have previously used other programs to break into Oracle databases, but the new software from Metasploit is easier to operate and runs more quickly than existing options.
Metasploit is the most widely used free hacking tool and has a loyal following in the security community.
Rogue employees can access them from their work PCs
In addition to letting hackers break into databases over the Internet, the Metasploit tool allows rogue employees to access them from their work PCs.
Workers could break into an Oracle system and secretly steal confidential data such as credit card numbers, give themselves pay raises or make other changes to corporate databases, said Finnigan, who has specialized in Oracle security for eight years.
Thursday, July 23, 2009
Subscribe to:
Post Comments (Atom)
Google Search
Blog Archive
-
▼
2009
(1022)
-
▼
July
(238)
- Hacked Company: Breach exposes nearly 6,00,000
- Can Mozilla face the browser onslaught from Google...
- Animated Film works the net
- Orissa small IT Firms seek sops
- We offer high-end cloud services to small businesses
- Extension of sunset clause for industrial parks ha...
- Web spiders picks 51% stake in netwings info
- IDS Softwares eyes govt tourism projects
- Emotions’ security solution for Metro Rail
- Global IT cos expect Indian PC market to rebound i...
- Browse the web on your TV
- Bangalore techies settle for low-paying jobs
- Ericsson to buy Nortel's wireless biz for $1.13 bi...
- Internet 2.0 will drive productivity growth
- How deleted email can come back
- Job drought could end soon; recruitment agencies s...
- Managed services spell big IT Business
- ‘SOCIAL’ Technologies in education
- Shriram properties to invest rs 4,900 crore in 3 y...
- Helipads, Skywalks planned at Mukesh Ambani promot...
- Bill Gates urges India to move from low-cost to R&D
- MS wants to be part of Unique Identity project
- iPhone: a lifeline for small Indian Software firms
- Customers want to buy value
- Best buy tests Internet contract
- PC Players will inject new levels of efficiency in...
- WAL-MART WOOS Laptop shoppers
- YAHOO! SWOOPS For XOOPIT Email photo finding firm
- AMAZON.COM buying shoe seller zappos for $928 million
- New IT Projects to generate 6000 jobs in Madhya Pr...
- Firms look at IT infrastructure, outsourcing to st...
- Biometric card that doubles as database
- BOA TO MULL 5 SEZ Proposals on August 11
- SAP to acquire SWISS CO SAF for $100 million
- Mid-sized firms expect IT budgets to increase
- Bill Gates foundation to log out from India
- Canon India to invest Rs 200 crore, launch 100 pro...
- PC makers plan to prop up market revival
- Mobile power
- Wipro net up 12 percent but IT revenue declines
- Tech Mahindra Q1 net plunges 49 percent y-o-y
- An engineer kills himself over lost 4G iPhone
- Windows 7 ready for PC companies: Microsoft
- Emails can resurface after deletion but in the wro...
- Google, Apple: two mobile software visions
- SREI identifies new verticals in Medical Equipment...
- ICAI backs rotation of partners every 5 years
- I&B to set up towers along border areas
- Builder's novel way to deliver IT space
- Green nod for effluent plant at Fab city SEZ
- IT Park looks for ‘ANCHOR PLAYER’
- Metricstream announces partnership with Sigmaquest
- Ideacts joins hands with Google
- Duros 8404 Tablet PC
- Ultra Light Notebooks
- Hacking Oracle's Database will get easier
- Hexaware undergoes makeover
- Fido to go 3D for small screens
- New software for universities
- Viewsonic launches PC in India
- The netbook grips the market
- IT Professionals give thumbs down to Microsoft
- Google adds moon to online earth map service
- Why Japan's oh-so-smart phones can't go global
- APPLE, RIM outsmart phone market
- Australia looking at India for skilled professiona...
- 18,230 patents granted in 2008-09
- Samsung launches LCD monitor series
- Avaya to buy Nortel’s enterprise segment
- Getting ahead with customised solutions
- Suntec adds new vertical, enters ports domain
- West Asia, latin America are our focus areas
- Microsoft India expands ipr scholarship programme
- INTEL, AMD to turn focus to graphics card market
- A Monsoon offer
- Samsung to invest $4.3 b in green R&D facilities
- India to be among top three mobile-net nations: Go...
- Nearly 700 employees laid off by Cisco
- Fujitsu to build Japan's next-generation supercomp...
- Companies discover the power of the brand as verb
- Plan to award teachers laptop
- IIM Lucknow sets up advisory platform for entrepre...
- Kolkata job index up 12 percent in june
- AN Eye for security
- DLF looks for a way out of Rs 1,500 crore Chennai SEZ
- VEGA KEEN to develop innovation park
- Cartoon Network to source more content from Indian...
- Faster, simpler user experience with Windows 7
- Fasten seat belts
- Luminous power scouting for buys
- Flextronics likely to shift some TN OPS
- Samsung netbook sports new processor
- UK firms are hiring, despite recession: survey
- Blackberry a forbidden fruit? children ask
- IBM inks 10-yr managed services deal with DSE
- Swine flu puts Hyderabad IT companies on high alert
- India expected to see an uptake in desktop virtual...
- Infopark board’s nod for construction at cherthala
- 3I infotech buys out stake in China JV
- Vayana acquires solutionnet
-
▼
July
(238)
Drop Box
Popular Posts
-
Saahil Anant, New Delhi Financial Chronicle Global notebook manufacturer, Dell Inc is shifting its focus from the corporate customers t...
-
The Times of India Research firm Gartner Inc recently published its annual `Hype Cycle for Emerging Technologies’ report. Like earlier years...
-
R. Balaji, Chennai The Hindu Business Line Shriram Properties & Infrastructure Pvt Ltd has pruned the IT and commercial space in its ...
-
New York The Economic Times Intel is expected to announce a management shake-up on Monday that will see its core chip business-head Patrick ...
-
DNA Microsoft may soon be launching a SideWinder-branded keyboard this fall, and sure enough, Redmond is keeping the revitalized name al...
-
In the recent past the Manufacturers’ Association for Information Technology (MAIT) has been highlighting the industry’s concern on the w...
-
Surabhi Agarwal The Financial Express India may be the Silicon Valley of the outsourcing world, but the country’s IT penetration is an ...
-
Pankaj Mishra & Joji Thomas Philip, Bangalore/New Delhi The Economic Times India's biggest mobile phone firm Bharti Airtel has ...
-
After witnessing a not-so-happening market for the ultra small laptops in India over the last few years, hardware manufacturers are all se...
-
Bangalore The Hindu A comprehensive policy to encourage the semiconductor industry in the State will be released in a few weeks. It a...
Powered by Blogger.
0 comments:
Post a Comment