Free Tool Being Released to Hack Oracle Databases

July 23, 2009

(ChattahBox) — A source security tester/hacker group plans to release a free tool that simplifies and automates remotely breaking into the Oracle databases at the Black Hat conference in Las Vegas next week. The tool was created through a controversial open source software project known as Metasploit.  Metasploit has the most widely used free hacking tools and has a loyal following in the security community. Metasploit has created hacking tools targeting Microsoft Windows, Apple’s OSX, Linux and Posix operating systems, as well as the Firefox and Internet Explorer browsers and applications such as Office and Adobe’s PDF applications.

The tool is reportedly designed so anyone can download and run the tool, regardless of skill or knowledge level, because it automates many of the complicated procedures required to hack into Oracle databases over the Internet. Oracle has already issued patches to protect against vulnerabilities that the Metasploit tool targets according to Reuters, but companies that do not patch their databases regularly will be vulnerable. In addition to letting hackers break into databases over the Internet, the Metasploit tool could also allow rogue employees to access them from their work PCs.


One Response to “Free Tool Being Released to Hack Oracle Databases”

  1. DBA Today – Daily life of an amateur DBA » Hacking Oracle’s database will soon get easier on July 23rd, 2009 1:18 pm

    […] MORE Free Tool Being Released to Hack Oracle Databases ChattahBox New Tool Makes It Easy to Hack Oracle Database IT Business Edge Metasploit tool […]

Got something to say? **Please Note** - Comments may be edited for clarity or obscenity, and all comments are published at the discretion of - Comments are the opinions of the individuals leaving them, and not of or its partners. - Please do not spam or submit comments that use copyright materials, hearsay or are based on reports where the supposed fact or quote is not a matter of public knowledge are also not permitted.