Information Security News mailing list archives

Security sleuths, sniff out the stupid from your Oracle DBs


From: InfoSec News <alerts () infosecnews org>
Date: Thu, 4 Jun 2015 09:00:13 +0000 (UTC)

http://www.theregister.co.uk/2015/06/04/security_sleuths_sniff_out_the_stupid_from_your_oracle_dbs/

By  Darren Pauli
The Register
4 Jun 2015

Databases remain a security nightmare, says Datacom TSS hacker David Litchfield, so he's built an application to give admins a hand.

The Datacom TSS hacker says the Database Security Scorecard will help inform system administrators of security shortfalls in databases and help bridge the language gap between management and tech.

Litchfield (@dlitchfield) revealed the scorecard at the AusCERT2015 conference on the Gold Coast, and will publish the free platform to his website later this week.

"Database security does not receive the support it deserves," Litchfield says.

"It is a no-man's land where security think it's the DBA's responsibility and DBAs think it's security's responsibility.

[...]



--
Evident.io - Continuous Cloud Security for AWS.
Identify and mitigate risks in 5 minutes or less.
Sign up for a free trial @ https://evident.io/


Current thread: