Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access

Read full story on The Hacker News
Share
Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access
AI disclosure

Summary

Attackers broke into an organization's Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation toolkit without writing an executable to disk. They fed Java source code to the database, let Oracle compile it into stored schema objects, and ran commands from inside the database engine. Huntress, which tracks the toolkit as khunt,

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.