<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>Eddie Awad’s Blog - Latest Comments in Oracle Rootkit</title><link>http://awads.disqus.com/</link><description>News, views, tips and tricks on Oracle and other fun stuff</description><atom:link href="https://awads.disqus.com/oracle_rootkit/latest.rss" rel="self"></atom:link><language>en</language><lastBuildDate>Tue, 24 Jan 2006 15:21:45 -0000</lastBuildDate><item><title>Re: Oracle Rootkit</title><link>http://awads.net/wp/2006/01/24/oracle-rootkit/#comment-3658265</link><description>&lt;p&gt;I was a security consultant prior to being a DBA.&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;I found that many folks tend to think of security as blocking outsiders.  Yet, too many times, an internal attack causes more problems, due to lack of auditing for internal users.  Further, if a company deploys a VPN with another company, you can possibly have users at another company taking stabs at your data without your knowledge.&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;Oh boy, what a wonderful world we live in.&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;--Tom&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Tom_Fox</dc:creator><pubDate>Tue, 24 Jan 2006 15:21:45 -0000</pubDate></item><item><title>Re: Oracle Rootkit</title><link>http://awads.net/wp/2006/01/24/oracle-rootkit/#comment-3658264</link><description>&lt;p&gt;&lt;i&gt;The DBSA already exists in many larger organizations&lt;/i&gt;&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;I guess in smaller (even medium) size organizations, database security is mainly the responsibility of a DBA, and, to alesser extent, database developers. -- Thanks Lewis.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Eddie Awad</dc:creator><pubDate>Tue, 24 Jan 2006 15:03:19 -0000</pubDate></item><item><title>Re: Oracle Rootkit</title><link>http://awads.net/wp/2006/01/24/oracle-rootkit/#comment-3658266</link><description>&lt;p&gt;Hi Eddie,&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;The DBSA already exists in many larger organizations.  With all of the compliance regulations and issues in recent years, it's important to have someone responsible for database security that understands the laws and regualtions around data at rest.  Understanding rootkits and keeping up with the latest from both Oracle and hackers is an important part of the job.&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;Thanks,&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;LewisC&lt;br&gt;&lt;a href="http://blogs.ittoolbox.com/oracle/guide/" rel="nofollow noopener" target="_blank" title="http://blogs.ittoolbox.com/oracle/guide/"&gt;http://blogs.ittoolbox.com/...&lt;/a&gt;&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Lewis Cunningham</dc:creator><pubDate>Tue, 24 Jan 2006 07:46:06 -0000</pubDate></item></channel></rss>