[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fslpxtUL18kjaBe8qvJmIQehKHjCc7-_13YRZ0OIiQYM":3},{"article":4,"iocs":49},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":11,"published_at":13,"ingested_at":14,"relevance_score":15,"entities":16,"category_id":27,"category":28,"article_tags":31},"09e67fdc-ae45-49ca-9b6d-dcc4b8f886e4","Hackers Smuggle Post-Exploitation Toolkit Into Oracle Database Via Classic SQL Injection Flaw","hackers-smuggle-post-exploitation-toolkit-into-oracle-database-via-classic-sql-i-5332d4","A SQL injection vulnerability that many organisations might consider a decades-old, well-understood threat has been used as the entry point for a far more sophisticated attack, after threat actors were caught planting a custom-built, database-resident toolkit inside an Oracle database. Security firm Huntress said it was alerted to suspicious activity on an endpoint hosting an […] The post Hackers Smuggle Post-Exploitation Toolkit Into Oracle Database Via Classic SQL Injection Flaw appeared first on IT Security Guru.","Threat actors have successfully exploited a classic SQL injection vulnerability to gain access to an Oracle database. Once inside, they deployed a custom-built, database-resident toolkit, indicating a sophisticated post-exploitation strategy. Security firm Huntress identified the suspicious activity, highlighting the continued relevance of older vulnerabilities in enabling advanced attacks.","Hackers exploit SQL injection to plant custom toolkit in Oracle database.",null,"https:\u002F\u002Fwww.itsecurityguru.org\u002F2026\u002F08\u002F05\u002Fhackers-smuggle-post-exploitation-toolkit-into-oracle-database-via-classic-sql-injection-flaw\u002F?utm_source=rss&utm_medium=rss&utm_campaign=hackers-smuggle-post-exploitation-toolkit-into-oracle-database-via-classic-sql-injection-flaw","2026-08-05T13:10:08+00:00","2026-08-05T14:00:09.786456+00:00",8,[17,20,23,25],{"name":18,"type":19},"Oracle Database","product",{"name":21,"type":22},"Oracle","vendor",{"name":24,"type":19},"SQL injection",{"name":26,"type":22},"Huntress","89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5",{"id":27,"icon":11,"name":29,"slug":30},"Malware","malware",[32,37,42,44],{"category":33},{"id":34,"icon":11,"name":35,"slug":36},"26b0b636-0e31-4db1-bffb-61bdf9f20a58","Supply Chain","supply-chain",{"category":38},{"id":39,"icon":11,"name":40,"slug":41},"80544778-fabb-4dcd-aa35-17492e5dcf4f","Vulnerabilities","vulnerabilities",{"category":43},{"id":27,"icon":11,"name":29,"slug":30},{"category":45},{"id":46,"icon":11,"name":47,"slug":48},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[]]