DBREACH: New Attack Targeting Databases

This article has been indexed from Softpedia News / Security

Infosecurity Magazine reports a new sort of database attack that may lead to data leakage and loss at the Black Hat US 2021 hybrid event on August 5. The attack is called DBREACH and it involves exfiltration and reconnaissance from databases using Adaptive Compression Heuristics. 

A modern database can use compression and encryption together to save money on storage, according to Mathew Hogan. Although this may be advantageous in certain cases, there is also a risk of being exploited by a class of vulnerabilities known as side-channel attacks. 

DBREACH attacks can be carried out in a variety of ways, says Hogan who explained their methods in an extensive presentation with 121 slides. In t…

Read the original article: DBREACH: New Attack Targeting Databases