| Date |
Type |
Title |
Author |
Event |
| January 11, 2012 |
Slides |
Auditing Data Access Without Bringing Your Database To Its Knees
|
Dale Brocklehurst
Kimber Spradlin
|
Black Hat USA 2006 |
| December 29, 2011 |
Slides |
Database Rootkits
|
Alexander Kornbrust
|
Black Hat EU 2005 |
| November 15, 2011 |
Slides |
Database Security
|
David Litchfield
|
Black Hat Asia 2002 |
| November 04, 2011 |
Slides |
Grabbing User Credentials via W2k ODBC Libraries
|
Tim Mullen
|
Black Hat USA 2001 |
| September 27, 2011 |
Slides |
Lifting the Fog
|
Marco Slaviero
|
Black Hat USA 2010 |
| August 08, 2011 |
Paper |
Danger From Below: The Untold Tale of Database Communication Protocol Vulnerabilities
|
Amichai Shulman
|
Black Hat DC 2007 |
| August 08, 2011 |
Slides |
Danger From Below: The Untold Tale of Database Communication Protocol Vulnerabilities
|
Amichai Shulman
|
Black Hat DC 2007 |
| July 08, 2011 |
Paper |
Hacking Databases for Owning Your Data
|
Cesar Cerrudo
Esteban Martínez Fayó
|
Black Hat EU 2007 |
| July 08, 2011 |
Slides |
Hacking Databases for Owning Your Data
|
Cesar Cerrudo
Esteban Martínez Fayó
|
Black Hat EU 2007 |
| June 01, 2011 |
Slides |
Database Forensics
|
David Litchfield
|
Black Hat USA 2007 |
| January 11, 2011 |
Paper |
Connection String Parameter Attacks
|
Chema Alonso
Jose Palazon
|
DEFCON 18 |
| January 11, 2011 |
Slides |
Connection String Parameter Attacks
|
Chema Alonso
Jose Palazon
|
DEFCON 18 |
| January 11, 2011 |
Video |
Connection String Parameter Attacks
|
Chema Alonso
Jose Palazon
|
DEFCON 18 |
| January 11, 2011 |
Video |
Connection String Parameter Attacks
|
Chema Alonso
Jose Palazon
|
DEFCON 18 |
| February 13, 2010 |
Slides |
Connection String Parameter Pollution Attacks
|
Chema Alonso
Jose Palazon
|
Black Hat DC 2010 |
| February 13, 2010 |
Paper |
Connection String Parameter Pollution Attacks
|
Chema Alonso
Jose Palazon
|
Black Hat DC 2010 |
| December 17, 2008 |
Slides |
Forensic Analysis of Database Tampering
|
|
|
| July 24, 2008 |
Paper |
Robust De-anonymization of Large Sparse Datasets
|
|
|
| July 06, 2008 |
Slides |
Why Are Databases So Hard To Secure?
|
Sheeri Kritzer Cabral
|
Shmoocon 2008 |
| May 13, 2008 |
Paper |
Having Fun With PostgreSQL
|
Nico Leidecker
|
|
| January 05, 2008 |
Paper |
Exploiting And Protecting Oracle
|
|
|
| January 05, 2008 |
Paper |
Extracting Clear Text Passwords from the SGA
|
|
|
| January 05, 2008 |
Paper |
Oracle Default User and Password List
|
|
|
| January 05, 2008 |
Paper |
Issues with the initialisation parameter fixed date
|
|
|
| January 05, 2008 |
Paper |
Have your objects been tampered with ?
|
|
|
| January 05, 2008 |
Paper |
Some thoughts on Oracle Passwords
|
|
|
| December 30, 2007 |
Paper |
Establish security policy with Oracle virtual private database
|
Donald Burleson
|
|
| December 30, 2007 |
Paper |
Oracle Row Level Security: Part 2
|
Pete Finnigan
|
|
| December 30, 2007 |
Paper |
Oracle Row Level Security: Part 1
|
Pete Finnigan
|
|
| December 30, 2007 |
Paper |
Fine Grained Access Control
|
Tom Kyte
|
|
| December 30, 2007 |
Paper |
Keeping Information Private with VPD
|
Arup Nanda
|
|
| December 30, 2007 |
Paper |
Securing Oracle Applications
|
Stephen Kost
|
|
| December 30, 2007 |
Paper |
Securing Oracle9iAS 1.0.2.x
|
Stephen Comstock
|
|
| December 30, 2007 |
Paper |
Oracle Database Listener Security Guide
|
Stephen Kost
|
|
| December 30, 2007 |
Paper |
Oracle Database Checklist
|
Pete Finnigan
|
|
| December 30, 2007 |
Paper |
How to Write an Oracle Security Plan
|
Marlene Theriault
|
|
| December 30, 2007 |
Paper |
Oracle Database Security Checklist
|
Oracle
|
|
| December 30, 2007 |
Paper |
Oracle Database 10g Security
|
Oracle
|
|
| December 30, 2007 |
Paper |
Securing PL/SQL Applications with DBMS_ASSERT
|
David Litchfield
|
|
| December 30, 2007 |
Paper |
Guide to the secure configuration and administration of Oracle 9i
|
NSA
|
|
| December 30, 2007 |
Paper |
Spoofing Oracle Session Information
|
Stephen Kost
|
|
| December 30, 2007 |
Paper |
Analysis of the Oracle Oct 2006 CPU
|
David Litchfield
|
|
| December 30, 2007 |
Paper |
Project Lockdown
|
Arup Nanda
|
|
| December 30, 2007 |
Paper |
Exploiting and Protecting Oracle
|
Pete Finnigan
|
|
| December 30, 2007 |
Paper |
Hack-proofing Oracle Databases
|
Aaron Newman
|
|
| December 30, 2007 |
Paper |
Cursor Snarfing - A New Class of Attack in Oracle
|
David Litchfield
|
|
| December 30, 2007 |
Paper |
Hack Proofing Oracle Application Server
|
David Litchfield
|
|
| December 30, 2007 |
Paper |
Cursor Injection - A New Method for Exploiting PL/SQL Injection and Potential Defences
|
David Litchfield
|
|
| December 30, 2007 |
Slides |
In-memory Backdoors in Oracle
|
David Litchfield
|
|
| December 30, 2007 |
Slides |
Oracle Forensics: Collecting Evidence After an Attack
|
Aaron Newman
|
|
| December 30, 2007 |
Paper |
Oracle Database Forensics using Logminer
|
Paul Wright
|
|
| December 30, 2007 |
Paper |
Oracle Forensics in a Nutshell
|
Paul Wright
|
|
| December 29, 2007 |
Paper |
Oracle Forensics Part 1: Dissecting the Redo Logs
|
David Litchfield
|
|
| December 29, 2007 |
Paper |
Oracle Forensics Part 2: Locating Dropped Objects
|
David Litchfield
|
|
| December 29, 2007 |
Paper |
Oracle Forensics Part 4: Live Response
|
David Litchfield
|
|
| December 29, 2007 |
Paper |
Oracle Forensics Part 3: Isolating Evidence of Attacks Against the Authentication Mechanism
|
David Litchfield
|
|
| December 29, 2007 |
Paper |
Oracle Forensics Part 5: Finding Evidence of Data Theft in the Absence of Auditing
|
David Litchfield
|
|
| December 29, 2007 |
Paper |
Oracle Forensics Part 6: Examining Undo Segments, Flashback and the Oracle Recycle Bin
|
David Litchfield
|
|
| December 29, 2007 |
Slides |
Oracle Forensics
|
Pete Finnigan
Aaron Newman
|
|
| December 29, 2007 |
Paper |
Guide to the secure configuration and administration of Microsoft SQL Server 2000
|
NSA
|
|
| December 29, 2007 |
Paper |
Violating Database-enforced Security Mechanisms
|
Chris Anley
|
|
| December 29, 2007 |
Paper |
Microsoft SQL Server Passwords
|
David Litchfield
|
|
| December 29, 2007 |
Paper |
Threat Profiling Microsoft SQL Server
|
David Litchfield
|
|
| December 29, 2007 |
Paper |
Hack-Proofing DB2
|
Aaron Newman
|
|
| December 29, 2007 |
Paper |
Protecting DB2 Data
|
Ulf T. Mattsson
|
|
| December 29, 2007 |
Paper |
Securing your database
|
Michael Dougherty
|
|
| December 29, 2007 |
Paper |
The Database Security Blanket
|
Paul Zikopoulos
|
|
| December 29, 2007 |
Paper |
DB2 Security
|
IBM
|
|