I regularly check David Litchfields blog (nice review[1]), but there was
nothing like that (I may be wrong of course) since the
DBMS_EXPORT_EXTENSION Injection (package with public execute access;
simply prevented with REVOKE EXECUTE ON SYS.DBMS_EXPORT_EXTENSION FROM PUBLIC FORCE[2-4]
Although there was a myriad of bugs and security flaws with oracle,
I can't remember another sql injection as dramatic as the above
mentioned.
There is only one constant, one universal, it is the only real truth: causality. Action. Reaction. Cause and effect...There is no escape from it, we are forever slaves to it. Our only hope, our only peace is to understand it, to understand the 'why'. 'Why' is what separates us from them, you from me. 'Why' is the only real social power, without it you are powerless.