database security

Security Technology Center

updated July 15, 2008

Oracle delivers secure infrastructure through a wide range of products, processes, and technologies to help prevent unauthorized access to confidential information, reduce the cost of managing users, and facilitate privacy management.

View the most recent Critical Patch Update Advisory (July 2008)

What's New
Technical Article: Authorizing Access to Dynamic Spatial-Temporal Data
Authorizing access to individual data objects based on spatial and temporal references is a complex task. Read this case study to learn one feasible approach.

Download: Oracle Authentication Services for Operating Systems
Oracle Authentication Services for Operating Systems, which provides centralized authentication and account management for Unix and Linux platforms, is now available for download.

Tutorial: Defending Against SQL Injection Attacks
By taking this self-study tutorial, you can arm yourself with techniques and tools to strengthen your code and applications against SQL Injection attacks.

Blog: Understanding the Common Vulnerability Scoring System (CVSS)
This official blog entry from the Oracle Security Team explains the details and background about Oracle's implementation of CVSS.

Technical Article: Implementing Row-Level Security in Java Applications
Learn how to enforce row-level security across your JEE application, from database to cache. From Oracle Fusion Middleware Regional Director Lonneke Dikmans.

Technical Article: Database-Based Authentication for PHP Apps
Learn how to secure PHP-based Web applications via database-based authentication in this two-part tutorial, with sample code included.


Documentation and Best Practices
Critical Patch Update Implementation (PDF)
Oracle Database Security Guide
Oracle Containers for J2EE Security Guide
Web Services Security Guide
Achieving Sarbanes-Oxley Compliance with Oracle Identity Management (PDF)

Community Content
Learn Database Security Best Practices: Project Lockdown
How To Encrypt Data in Oracle Using PHP
Securing a .NET Application on the Oracle Database
Understanding Transparent Data Encryption
Database Security: Beyond the Password
Using VPD in an Oracle HTML DB Application
Encrypt Your Data Assets
Fine-Grained Auditing in Oracle Database 10g (3-part series)
Oracle 10g Virtual Private Database in Action
More Security Articles...

 
Left Curve
Security Technology
Right Curve
· Database Platform Security
· Application Server Platform Security
·
·

Left Curve
Security Downloads
Right Curve

Left Curve
Security Response
Right Curve
·
· Security Vulnerability Fixes - Policy and Process
· Critical Patch Update Implementation Best Practices (PDF)

Left Curve
Discussions
Right Curve
Untitled Document
External Authentication
Jul 23, 2008
by: user550338
Re: integrate Oracle Applicati...
Jul 23, 2008
by: andreas.chatziantoniou@xs4all.nl
Aqualogic 6.1 and .Net Single ...
Jul 21, 2008
by: rdkll2k
SSL X.509 Server Match Paramet...
Jul 15, 2008
by: mbhatti
Hayden.exe accessing Isssue
Jul 10, 2008
by: MOHAN

Left Curve
Blogs
Right Curve
· Mary Ann Davidson
· Nishant Kaushik
· Mark Wilcox
· Security Management Team

Left Curve
Podcasts
Right Curve
 · Mary Ann Davidson Interview Play!
 · Identity Management: Standards Play!
 · Identity Management: Application-Centric Identity Management Play!
 · Identity Management: Attestation Play!
 · Identity Management: Virtual Directories Play!
 · Identity Management: Fine-Grained Authorization Play!
E-mail this page
Printer View Printer View
Oracle Is The Information Company About Oracle | Oracle RSS Feeds | Careers | Contact Us | Site Maps | Legal Notices | Terms of Use | Privacy