<feed version="0.3"
      xmlns="http://purl.org/atom/ns#"
      xmlns:dc="http://purl.org/dc/elements/1.1/">
  <author>
    <name>Pete Finnigan</name>
    <email>pete\@petefinnigan.com</email>
  </author>
  <copyright mode="escaped"
             type="text/html">Copyright PeteFinnigan.com Ltd 2005, All rights reserved. All trademarks are the property of their respective owners and are hereby acknowledged</copyright>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001172.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; I noticed today that Howard&amp;apos;s Dizwell-Oracle Reliable Installation Script (DORIS) version 1.0a shell script is available again for download. This is a useful script and great for installing Oracle on Linux without resorting to reading loads of &amp;quot;how-to&amp;quot; sites. Howard....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001172.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 16/05/08 At 07:50 PM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001172.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">Howard&amp;apos;s DORIS script is available again - some security comments from me</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001171.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; I posted a couple of days ago a link to an almost certain hoax of a license plate of a red mini that had been altered to include SQL Injection. This was in a post titled License Plate SQL Injection....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001171.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 15/05/08 At 09:02 PM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001171.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">License Plate scanners and SQL Injection</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001170.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; I would recommend anyone that is interested in securing their Oracle database to subscribe to some of the major security lists such as the bugtraq list at securityfocus.com or the full disclosure list. There are plent more besides these, but....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001170.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 14/05/08 At 07:42 PM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001170.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">Oracle Application Server 10g ORA_DAV basic authentication bypass</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001169.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; Wow, its been a while since I posted, I have been travelling all over the world over the last month or so, teaching my Oracle security class and also speaking at conferences and performing Oracle security audits. It&amp;apos;s been a....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001169.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 13/05/08 At 07:38 PM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001169.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">License plate SQL Injection</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001168.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; I have posted the slides to my talk from yesterday at the OUG Scotland SIG to my Oracle Security white papers page . They are the first entries in the page. The talk was 45 minutes about Oracle Forensics. This....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001168.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 01/05/08 At 02:23 PM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001168.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">Slides from OUG Scotland DBA SIG on Oracle Forensics available</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001167.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; I saw a post on the BAR Solutions blog today titled &amp;quot; Triggers… &amp;quot; that was very interesting as I have had the same issue in the past for different reasons. The blog post was around an issue where triggers....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001167.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 01/05/08 At 01:22 PM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001167.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">Conditionally firing triggers</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001166.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; I am writing this whilst sat on a train travelling at around 120mph between York and Darlington, this is probably my first blog entry written at speed! I saw that David had released his paper &amp;quot; Lateral SQL Injection: A....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001166.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 30/04/08 At 08:26 AM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001166.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">Lateral SQL Injection and Conferences and security training</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001165.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; I was over in Norway this week and the Oracle User Group Norway (OUGN) asked me to speak at an evening user group meeting of theirs. This was a eally friendly group and it was a pleasure to speak there....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001165.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 25/04/08 At 05:58 PM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001165.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">Slides from OUGN Norway and RISK 2008 Norway available</title>
  </entry>
  <entry>
    <id>tag:www.petefinnigan.com,2008-05-16:%2Fweblog%2Farchives%2F00001164.htm</id>
    <author>
      <name>Pete Finnigan</name>
      <email>pete\@petefinnigan.com</email>
    </author>
    <content mode="escaped"
             type="text/html">  &amp;lt;p&amp;gt; Oracle&amp;apos;s pre-patch advisory note for the next Critical Patch Update (CPU) due this Tuesday (15th) states that there are 17 new security fixes for the database, two for Apex and two of which are remotely exploitable without authentication. The advisory....&amp;lt;a href=&amp;quot;http://www.petefinnigan.com/weblog/archives/00001164.htm&amp;quot;&amp;gt;[Read More]&amp;lt;/a&amp;gt; &amp;lt;/p&amp;gt;  &amp;lt;p&amp;gt;Posted by Pete On 14/04/08 At 10:17 AM&amp;lt;/p&amp;gt;</content>
    <issued>2008-05-16T20:52:04Z</issued>
    <link href="http://www.petefinnigan.com/weblog/archives/00001164.htm"
          rel="alternate"
          type="text/html" />
    <modified>2008-05-16T20:52:04Z</modified>
    <title mode="escaped"
           type="text/html">Two remotely exploitable without authentication bugs to be fixed</title>
  </entry>
  <generator url="http://search.cpan.org/dist/XML-Atom-SimpleFeed"
             version="0.7">XML::Atom::SimpleFeed</generator>
  <link href="http://www.petefinnigan.com/weblog/entries"
        rel="alternate"
        type="text/html" />
  <modified>2008-05-16T20:52:04Z</modified>
  <tagline mode="escaped"
           type="text/html">PeteFinnigan.com's weblog is the only weblog dedicated to Oracle security.</tagline>
  <title mode="escaped"
         type="text/html">Pete Finnigan's Oracle security weblog</title>
</feed>
