Call: +44 (0)7759 277220 Call
Blog

Pete Finnigan's Oracle Security Weblog

This is the weblog for Pete Finnigan. Pete works in the area of Oracle security and he specialises in auditing Oracle databases for security issues. This weblog is aimed squarely at those interested in the security of their Oracle databases.

[Previous entry: "Oracle launches identity governance project"] [Next entry: "Pete Finnigan's UKOUG presentation on FGA, VPD and audit performance"]

Tension between security vendors, bug hunters continues to simmer



Tension between security vendors, bug hunters continues to simmer - At issue is recent criticism of Oracle's security practices - by Jaikumar Vijayan

"December 03, 2006 (Computerworld) -- The long-standing tension between software vendors and independent vulnerability researchers who find security holes in vendors' products shows little signs of abating -- despite recent talk about responsible vulnerability disclosure practices.

Last week Oracle Corp. criticized independent vulnerability researchers after it came under fire for its security practices. In a company blog, Eric Maurice, manager for security in Oracle's global technology business unit, said the company would not let external perceptions drive its security policies."