Ethical Hacker Community Forums

General Discussions and Related Certifications => Ethical Hacking => Topic started by: RoleReversal on May 09, 2008, 03:35:21 AM



Title: Database attacks
Post by: RoleReversal on May 09, 2008, 03:35:21 AM
Guys,

I've just read this article on Dark reading regarding penetrating databases (http://www.darkreading.com/document.asp?doc_id=153291&WT.svl=news1_1). Gave me food for thought and I'll be looking over my own sysems in response to make sure I haven't missed the obvious.

Is also a good example of ways to penetrate systems without requiring an exploit which was recently queried by Loic (http://www.ethicalhacker.net/component/option,com_smf/Itemid,54/topic,2421.msg10715/#msg10715) all methds mentioned rely on poor configuration, poor input validation or simple human error. No 'sploit required