- Alexander Kornbrust Oracle Security Blog - http://blog.red-database-security.com -
Laszlo’s presentation “Oracle Post Exploitation Techniques” and Marcel’s Sybase ASE Password Cracker
Dieser Eintrag stammt von Alexander Kornbrust Am 21 Sep 2010 @ 14:59 In 11g, Oracle Security | Kommentarfunktion deaktiviert
Last weekend I gave a presentation “Security comparison of different databases” (Oracle, MySQL, MSSQL, DB2 LUW, PostgreSQL and Sybase ASE) at the Hacktivity 2010 conference in Budapest. A blog entry dedicated to this will be released soon.
I saw Laszlo’s presentation “[1] Oracle post exploitation techniques” and got even a private sneak preview of his presentation in English 1 day before.
Laszlo talked about very very interesting things (at least for me) and I personally think that this is one of the best Oracle security research papers I know. Also some paranoid customers have to rethink their security architecture because this research affects DB Vault and Oracle TDE as well (every OS user can see every cleartext password during the logon process).
The second really good presentation was from Marcell Major about reversing password algorithms. He showed different ways how to perform this and showed how he did this for Sybase ASE database passwords. Especially the old SYS-PROP based on a FEAL algorithm was really impressive. But this presentation is currently not online.
Marcell already released the password cracker for new [2] Sybase ASE SHA256 algorithm.
Our new Repscan 4.0 supports now Sybase ASE, PostgreSQL and Microsoft SQL Azure and can crack all these passwords .
Dieser Artikel wurde ausgedruckt ab Alexander Kornbrust Oracle Security Blog: http://blog.red-database-security.com
URL zum Artikel: http://blog.red-database-security.com/2010/09/21/laszlos-presentation-oracle-post-exploitation-techniques-and-marcel-sybase-password-cracker/
URLs in this post:
[1] Oracle post exploitation techniques: http://www.soonerorlater.hu/download/hacktivity_lt_2010_en.pdf
[2] Sybase ASE SHA256: http://marcellmajor.com/sybase_sha256.html
Klicken hier zum Drucken.