<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
  <title>ORACLE SQL Injection Cheat Sheet - Yorumlar</title>
  <description>Ferruh Mavituna - Me, Myself and My Alter Ego...</description>
  <copyright>Ferruh Mavituna</copyright>
  <link>http://ferruh.mavituna.com</link>
  <lastBuildDate>Cmt, 20 Mar 2010 00:46:11 +0200</lastBuildDate>
  <image>
    <title>Ferruh Mavituna</title>
    <link>http://ferruh.mavituna.com</link>
    <url>http://ferruh.mavituna.com/rss/rss.gif</url>
  </image>
  <item>
  <title>harsh</title>
  <link>http://ferruh.mavituna.com/oracle-sql-injection-cheat-sheet-oku/</link>
  <author>harsh</author>
  <pubDate>Çar, 10 Mar 2010 13:27:41 +0200</pubDate>
  <description>           jhello...this is  geat expierence /......</description>
</item>
<item>
  <title>rem7ter</title>
  <link>http://ferruh.mavituna.com/oracle-sql-injection-cheat-sheet-oku/</link>
  <author>rem7ter</author>
  <pubDate>Cmt, 22 Kas 2008 08:43:02 +0200</pubDate>
  <description>           thanks!but not sure that is useful</description>
</item>
<item>
  <title>Deep Power</title>
  <link>http://ferruh.mavituna.com/oracle-sql-injection-cheat-sheet-oku/</link>
  <author>Deep Power</author>
  <pubDate>Per, 16 Eki 2008 16:51:49 +0200</pubDate>
  <description>           Ferruh abi iyi g&amp;#252;zel de ingilizce.Ingilizcem o kadar iyi degildir.En iyisi sen bunu tr ye &amp;#231;evir.Bir lise ogrencisi i&amp;#231;in zor : )&lt;br /&gt;Selametle...</description>
</item>
<item>
  <title>Ferruh Mavituna</title>
  <link>http://ferruh.mavituna.com/oracle-sql-injection-cheat-sheet-oku/</link>
  <author>Ferruh Mavituna</author>
  <pubDate>Sal, 02 Eki 2007 23:42:22 +0200</pubDate>
  <description>           Alexandar,&lt;br /&gt;Thanks for your comments. I'm quite new in ORACLE stuff. I updated current list according to your comments. </description>
</item>
<item>
  <title>Alexander Kornbrust</title>
  <link>http://ferruh.mavituna.com/oracle-sql-injection-cheat-sheet-oku/</link>
  <author>Alexander Kornbrust</author>
  <pubDate>Sal, 02 Eki 2007 22:18:19 +0200</pubDate>
  <description>           Nice list but some of the statements are too complicated:&lt;br /&gt;&lt;br /&gt;e.g. &lt;br /&gt;          SELECT username, FROM all_users UNION SELECT name, password FROM sys.user$&lt;br /&gt;better: SELECT name, password FROM sys.user$ where type#=1&lt;br /&gt;&lt;br /&gt;or&lt;br /&gt;use httpuritype instead of utl_http. utl_http is often removed from public. httpuritype works also and is not flagged by IDS:&lt;br /&gt;     SELECT HTTPURITYPE('http://www.red-database-security.com').getXML() FROM DUAL;&lt;br /&gt;&lt;br /&gt;</description>
</item>

</channel>
</rss>