Attackers Use Oracle to Compile Khunt, Escalate SQL Injection to Windows SYSTEM
Attackers exploited an Oracle database via SQL injection to compile a tool called khunt inside the database environment, enabling a path to full Windows SYSTEM-level access. This technique turns a database vulnerability into a serious operating system compromise, raising concerns for organizations using Oracle.