Call: +44 (0)1904 557620 Call

Pete Finnigan's Oracle Security Weblog

This is the weblog for Pete Finnigan. Pete works in the area of Oracle security and he specialises in auditing Oracle databases for security issues. This weblog is aimed squarely at those interested in the security of their Oracle databases.

[Previous entry: "Details Oracle Critical Patch Update January 2007 - V1.02 released"] [Next entry: "Secure Passwords Keep You Safer"]

Toolkit of generators and brute force tools

I was emailed a link to 0rm's latest toolkit that includes some Oracle brute force tools. The T2 brute force compilation rev 2 includes a number of Oracle tools. These are:

default.txt - a list of Oracle default passwords
oraclehash - creates an Oracle password hash
orabf - brute force Oracle password cracker
oracr - creates an Oracle SQL*Net 8 challenge response pair
oracrbf - brute forces Oracle SQL*Net challenge response pairs

This is a great tool set and worth downloading