database security

Security Technology Center

updated April 21, 2008

Oracle delivers secure infrastructure through a wide range of products, processes, and technologies to help prevent unauthorized access to confidential information, reduce the cost of managing users, and facilitate privacy management.

View the most recent Critical Patch Update bulletin (April 2008)

What's New
Technical Article: Authorizing Access to Dynamic Spatial-Temporal Data
Authorizing access to individual data objects based on spatial and temporal references is a complex task. Read this case study to learn one feasible approach.

Download: Oracle Authentication Services for Operating Systems
Oracle Authentication Services for Operating Systems, which provides centralized authentication and account management for Unix and Linux platforms, is now available for download.

Tutorial: Defending Against SQL Injection Attacks
By taking this self-study tutorial, you can arm yourself with techniques and tools to strengthen your code and applications against SQL Injection attacks.

Blog: Understanding the Common Vulnerability Scoring System (CVSS)
This official blog entry from the Oracle Security Team explains the details and background about Oracle's implementation of CVSS.

Technical Article: Implementing Row-Level Security in Java Applications
Learn how to enforce row-level security across your JEE application, from database to cache. From Oracle Fusion Middleware Regional Director Lonneke Dikmans.

Technical Article: Database-Based Authentication for PHP Apps
Learn how to secure PHP-based Web applications via database-based authentication in this two-part tutorial, with sample code included.


Documentation and Best Practices
Critical Patch Update Implementation (PDF)
Oracle Database Security Guide
Oracle Containers for J2EE Security Guide
Web Services Security Guide
Achieving Sarbanes-Oxley Compliance with Oracle Identity Management (PDF)

Community Content
Learn Database Security Best Practices: Project Lockdown
How To Encrypt Data in Oracle Using PHP
Securing a .NET Application on the Oracle Database
Understanding Transparent Data Encryption
Database Security: Beyond the Password
Using VPD in an Oracle HTML DB Application
Encrypt Your Data Assets
Fine-Grained Auditing in Oracle Database 10g (3-part series)
Oracle 10g Virtual Private Database in Action
More Security Articles...

 
Left Curve
Security Technology
Right Curve
· Database Platform Security
· Application Server Platform Security
·
·

Left Curve
Security Downloads
Right Curve

Oracle Develop 2008
Registration now open!

Left Curve
Security Response
Right Curve
·
· Security Vulnerability Fixes - Policy and Process
· Critical Patch Update Implementation Best Practices (PDF)

Left Curve
Discussions
Right Curve
Untitled Document
Re: is there anyway to get the...
Jul 5, 2008
by: sun_certified
OLS integration with Oracle E-...
Jul 4, 2008
by: user645454
is there anyway to get the 10g ...
Jun 30, 2008
by: sun_certified
Re: Database Vault installatio...
Jun 27, 2008
by: hbradshaw310
Re: can sqlldr use wallet with...
Jun 26, 2008
by: Peter Wahl

Left Curve
Blogs
Right Curve
· Mary Ann Davidson
· Nishant Kaushik
· Mark Wilcox
· Security Management Team

Left Curve
Podcasts
Right Curve
 · Mary Ann Davidson Interview Play!
 · Identity Management: Standards Play!
 · Identity Management: Application-Centric Identity Management Play!
 · Identity Management: Attestation Play!
 · Identity Management: Virtual Directories Play!
 · Identity Management: Fine-Grained Authorization Play!
E-mail this page
Printer View Printer View
Oracle Is The Information Company About Oracle | Oracle RSS Feeds | Careers | Contact Us | Site Maps | Legal Notices | Terms of Use | Privacy