<?xml version="1.0" encoding="ISO-8859-1"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Pete Finnigan's Oracle security weblog</title>
<link>http://www.petefinnigan.com/weblog/entries</link>
<description>PeteFinnigan.com's weblog is the only weblog dedicated to Oracle security.</description>
<copyright>Copyright PeteFinnigan.com Ltd 2005, All rights reserved. All trademarks are the property of their respective owners and are hereby acknowledged</copyright>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
<lastBuildDate>Fri, 12 Mar 2010 14:01:36 +0000</lastBuildDate>

<image>
<title>Pete Finnigan's Oracle security weblog</title>
<url>http://www.petefinnigan.com/images/company_logo_1.gif</url>
<link>http://www.petefinnigan.com/weblog/entries</link>
<width>144</width>
</image>

<item>
<title>A paper on Sentrigo Hedgehog and Pete Finnigan webinar slides</title>
<link>http://www.petefinnigan.com/weblog/archives/00001314.htm</link>
<description>  &lt;p&gt; I did two webinars this week with Sentrigo titled &quot;The right way to Secure Oracle&quot;, these went well. The slides for the talks have been added to my Oracle Security white papers page . I have also written a short....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001314.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 12/03/10 At 01:59 PM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001314.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

<item>
<title>Blocking Tools from using the database</title>
<link>http://www.petefinnigan.com/weblog/archives/00001313.htm</link>
<description>  &lt;p&gt; I saw Charles Hoopers post titled &quot; Why Doesnâ€™t This Trigger Work â€&quot; No Developer Tools Allowed in the Database &quot; via my Oracle blogs aggregator and read it with interest as its related to issues i come across with....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001313.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 10/03/10 At 11:08 AM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001313.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

<item>
<title>Pete Finnigan Webinar on Oracle Security</title>
<link>http://www.petefinnigan.com/weblog/archives/00001312.htm</link>
<description>  &lt;p&gt; It has been quite a while since my last blog post; i keep promising to post more often and even worse I have a long list of things to blog about but I don&apos;t seem to get enough time recently....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001312.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 08/03/10 At 04:04 PM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001312.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

<item>
<title>SANS 2010 CWE/SANS Top 25 Most Dangerous Programming Errors</title>
<link>http://www.petefinnigan.com/weblog/archives/00001311.htm</link>
<description>  &lt;p&gt; SANS, Mitre and a lot of security experts have just completed the top 25 most dangerous programming errors list. This is a really useful resource and anyone developing code not just against Oracle but in general should be concerned to....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001311.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 23/02/10 At 01:42 PM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001311.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

<item>
<title>SQL Injection and Java exploits</title>
<link>http://www.petefinnigan.com/weblog/archives/00001310.htm</link>
<description>  &lt;p&gt; It has been a while since my last blog post as I have been extremely busy over the last weeks and this blog post is being posted straight after finishing a customer training session using the clients internet connection (with....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001310.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 17/02/10 At 04:01 PM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001310.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

<item>
<title>Turkey, Germany, York, Holland and the Oak Table book</title>
<link>http://www.petefinnigan.com/weblog/archives/00001309.htm</link>
<description>  &lt;p&gt; I was away most of last week to teach my class How to perform a security audit of an Oracle database in Istanbul, Turkey including the travel out and back. It was a good class, very well attended and some....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001309.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 02/02/10 At 06:37 PM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001309.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

<item>
<title>The Oracle listener password algorithm</title>
<link>http://www.petefinnigan.com/weblog/archives/00001308.htm</link>
<description>  &lt;p&gt; There has been a thread on my forum for a couple of years discussing the Oracle listener password algorithm. The thread is titled &quot; Key and algo for encrypting the listener password &quot;. This thread discussed the issue of being....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001308.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 01/02/10 At 07:39 PM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001308.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

<item>
<title>Two new Oracle root kits</title>
<link>http://www.petefinnigan.com/weblog/archives/00001307.htm</link>
<description>  &lt;p&gt; Dennis has made two great posts about Oracle rootkits on his blog. The first is about creating a backdoor into the Oracle binaries and logon process/function by replacing the C library function kziaia() so that if the user presented is....&lt;a href=&quot;http://www.petefinnigan.com/weblog/archives/00001307.htm&quot;&gt;[Read More]&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Posted by Pete On 20/01/10 At 02:06 PM&lt;/p&gt;</description>
<guid isPermaLink="true">http://www.petefinnigan.com/weblog/archives/00001307.htm</guid>
<pubDate>Fri, 12 Mar 2010 14:01:36 +0000</pubDate>
</item>

</channel>
</rss>