Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access

Attackers broke into an organization's Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation toolkit without writing an executable to disk. This sophisticated attack highlights a significant blind spot in traditional database security.

https://meta-news.info/ver/attackers-compile-khunt-inside-oracle-to-turn-sql-injection-into-windows-system-access