<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-13265058.post3374707734037145843..comments</id><updated>2011-09-18T07:50:28.153+10:00</updated><category term='interval'/><category term='non-oracle'/><category term='teradata'/><category term='apex'/><category term='beer'/><category term='proxy'/><category term='postgres'/><category term='meetup'/><category term='SQL'/><category term='autonomous transaction'/><category term='debugging'/><category term='characters'/><category term='books'/><category term='concat'/><category term='Amazon'/><category term='passwords'/><category term='UI'/><category term='sql developer'/><category term='analytics'/><category term='gdal'/><category term='Spatial'/><category term='oracle-xe'/><category term='oralce'/><category term='insert'/><category term='XE'/><category term='presentation'/><category term='OpenStreetMap'/><category term='exceptions'/><category term='troubleshooting'/><category term='Personal Edition'/><category term='job'/><category term='excel'/><category term='exception handling'/><category term='direct-path'/><category term='11gR2'/><category term='ORM'/><category term='Log Buffer'/><category term='11g'/><category term='virtual'/><category term='developer'/><category term='subtype'/><category term='football'/><category term='raid'/><category term='odtug'/><category term='htmldb'/><category term='rant'/><category term='laptop'/><category term='backup'/><category term='humor'/><category term='plsql'/><category term='append'/><category term='technology summit'/><category term='plsql challenge'/><category term='emacs'/><category term='shapefile'/><category term='ogr2ogr'/><category term='servererror'/><category term='sydney'/><category term='to'/><category term='soccer'/><category term='mysql'/><category term='google maps'/><category term='oradbpedia'/><category term='security'/><category term='politics'/><category term='broadband'/><category term='dba'/><category term='optimizer'/><category term='humour'/><category term='XML'/><category term='timesten'/><category term='CSV'/><category term='proxy authentication'/><category term='cloud'/><category term='constructors'/><category term='sylk'/><category term='sql server'/><category term='multimedia'/><category term='oracle'/><category term='rownum'/><category term='AWS'/><category term='databases'/><category term='copyright'/><category term='named notation'/><category term='OTN'/><category term='data structures'/><category term='failsafe'/><category term='testing'/><category term='blogging'/><category term='OSM'/><category term='google'/><category term='SaxLoader'/><title type='text'>Comments on Sydney Oracle Lab: WARNING, WARNING, DANGER, DANGER !</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://blog.sydoracle.com/feeds/3374707734037145843/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/13265058/3374707734037145843/comments/default'/><link rel='alternate' type='text/html' href='http://blog.sydoracle.com/2011/09/warning-warning-danger-danger.html'/><author><name>Gary Myers</name><uri>https://profiles.google.com/116132019768637593422</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-AcOvwFaIPPo/AAAAAAAAAAI/AAAAAAAABOE/36JTjDn-Oh8/s512-c/photo.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-13265058.post-97118024593834744</id><published>2011-09-18T07:50:28.153+10:00</published><updated>2011-09-18T07:50:28.153+10:00</updated><title type='text'>They love backwards compatibility too much to make...</title><content type='html'>They love backwards compatibility too much to make it mandatory (especially for users of third party products). But you&amp;#39;ve prompted the next blog post....&lt;br /&gt;&lt;br /&gt;I wouldn&amp;#39;t be surprised if the next version includes a warning if the program unit uses dynamic SQL or anything else vulnerable to injection.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/13265058/3374707734037145843/comments/default/97118024593834744'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/13265058/3374707734037145843/comments/default/97118024593834744'/><link rel='alternate' type='text/html' href='http://blog.sydoracle.com/2011/09/warning-warning-danger-danger.html?showComment=1316296228153#c97118024593834744' title=''/><author><name>Gary Myers</name><uri>http://www.blogger.com/profile/10404756950638119562</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.sydoracle.com/2011/09/warning-warning-danger-danger.html' ref='tag:blogger.com,1999:blog-13265058.post-3374707734037145843' source='http://www.blogger.com/feeds/13265058/posts/default/3374707734037145843' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-155214725'/></entry><entry><id>tag:blogger.com,1999:blog-13265058.post-8616585981638898138</id><published>2011-09-17T20:44:16.321+10:00</published><updated>2011-09-17T20:44:16.321+10:00</updated><title type='text'>Hi.

Over the last few years the SQL injection and...</title><content type='html'>Hi.&lt;br /&gt;&lt;br /&gt;Over the last few years the SQL injection and privilege escalation problems have forced Oracle themselves into using invoker rights on many internal packages. This should be a message to us that we need to think more seriously about it ourselves.&lt;br /&gt;&lt;br /&gt;I would not be overly disturbed if Oracle made this clause mandatory in future. If nothing else, people would be forced to understand the implications... :)&lt;br /&gt;&lt;br /&gt;I think people should leave the warnings on and add the clause to all their code. Of course, I&amp;#39;ve not bothered to do that yet. :)&lt;br /&gt;&lt;br /&gt;Cheers&lt;br /&gt;&lt;br /&gt;Tim...</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/13265058/3374707734037145843/comments/default/8616585981638898138'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/13265058/3374707734037145843/comments/default/8616585981638898138'/><link rel='alternate' type='text/html' href='http://blog.sydoracle.com/2011/09/warning-warning-danger-danger.html?showComment=1316256256321#c8616585981638898138' title=''/><author><name>Tim...</name><uri>http://www.blogger.com/profile/17721555946005999179</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://www.oracle-base.com/images/OracleMagazineAwardsDinner2006.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.sydoracle.com/2011/09/warning-warning-danger-danger.html' ref='tag:blogger.com,1999:blog-13265058.post-3374707734037145843' source='http://www.blogger.com/feeds/13265058/posts/default/3374707734037145843' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1501865155'/></entry></feed>
