SQL Injection in Oracle Escalates to SYSTEM Execution on Windows via Embedded Java Compilation
A real-world intrusion chain observed in active attacks shows how a simple SQL injection can escalate to full command execution on Windows with SYSTEM privileges. The pivot relies on Oracle Database and its built-in capability to load, compile, and execute Java inside the database engine, a powerful feature that significantly expands the attack surface when left enabled without proper controls.
The intrusion began with a basic SQL injection in an internet-facing application and progressed to command execution on a Windows server under SYSTEM rights. The critical turning point was not a new operating-system vulnerability but a legitimate Oracle Database function that allows Java source code to be loaded, compiled, and executed as part of the database's internal logic.
After obtaining database access, the attackers inserted Java source code, turned it into schema objects, and compiled it directly on the server. This post-exploitation method is particularly challenging for defenders because it reduces dependence on classic on-disk binaries and moves tooling inside the database engine, which is often monitored less rigorously than the operating system or web server.
The activity has been associated with an artifact named khunt, linked to telemetry from Huntress. The ultimate goal is to convert an application-level entry point into a pathway for executing actions on the host. When the Oracle process runs with elevated permissions on Windows, any execution chained from the database context can inherit very high privileges, up to SYSTEM, posing severe risks to the rest of the machine and its data.
The chain reinforces a well-known but frequently ignored principle: defense must start at the application layer. Remediation requires replacing string concatenation with parameterized queries and strict input validation. Database administrators should then evaluate whether Java support in Oracle is truly necessary; if not, it should be disabled or heavily restricted.
Security teams can improve visibility by monitoring specific signals inside Oracle, including statements and events such as CREATE JAVA SOURCE, CREATE JAVA CLASS, and compilation operations. Additional hardening steps include limiting users who can execute Java-related DDL, applying least-privilege principles to the application database account, and preventing the Oracle service from running with unnecessary Windows privileges.
Related articles
Critical CVE-2026-61500 in Rejetto HFS Allows Admin Session Forgery Leading to Remote Code Execution
A critical vulnerability tracked as CVE-2026-61500 is being actively exploited in Rejetto HTTP File Server (HFS), enabling unauthenticated attackers to forge administrator sessions and achieve remote code execution. The flaw impacts versions 3.0.0 through 3.2.0 and was addressed in release 3.2.1, making immediate updates essential for any internet-exposed instances. The root cause lies in the use of JavaScript Math.random() to generate the session cookie signing key instead of a cryptographically secure random number generator. Attackers can reconstruct the internal state of this weak PRNG from login responses, allowing them to create valid admin cookies. Once authenticated as an administrator, the attacker can abuse the server_code functionality to execute arbitrary JavaScript on the server. Exploitation activity was first observed on October 1, 2026, targeting U.S. systems and attributed to an unidentified actor based in China, following the public release of a Python proof-of-concept in late September.
Dell Patches Six Critical Flaws in Container Storage Modules for Kubernetes
Dell has fixed six vulnerabilities in its Container Storage Modules that integrate storage systems with Kubernetes clusters. Two of the issues received the maximum CVSS score of 10.0, allowing remote unauthenticated attackers to obtain full administrative credentials for registered storage backends. Additional flaws enable privilege escalation to root on cluster nodes, exposure of hardcoded credentials, and leakage of Kubernetes secrets across the entire cluster. All versions prior to 1.17.0 are affected, with the fixes delivered in version 1.18.0. No workarounds exist, and Dell recommends rotating JWT signing keys after applying the update because the previous keys must be considered compromised.
Critical Sandbox Bypass Flaw in GitLab AI Gateway Enables Remote Command Execution
GitLab has released patches for a critical vulnerability in its GitLab AI Gateway component that allows authenticated users to bypass sandbox restrictions and execute arbitrary commands. The flaw, tracked as CVE-2026-90970, resides in the custom flow prompt template processing of the Duo Agent Platform and carries a CVSS v3.1 base score of 9.9. Self-hosted deployments are affected, while GitLab’s own hosted AI Gateway service has already been updated. The company urges immediate upgrades to versions 19.4.1, 19.3.2, or 19.2.4. The vulnerability can be triggered under specific conditions by users with access to the Duo Agent Platform through crafted flow configurations.
WebPros Releases Critical Patches for Three Vulnerabilities in cPanel & WHM
WebPros International has published security updates addressing three critical vulnerabilities in its cPanel & WHM hosting management platform. All three issues received the highest severity rating of Critical. The flaws include CVE-2026-93698, an input validation weakness in the Multilang adminbin component that could allow root-level operating system command execution. Two additional stored cross-site scripting vulnerabilities were also fixed, one of which is CVE-2026-93697 affecting the Mass Modify Accounts interface in WHM. Successful exploitation of the XSS flaws could let low-privileged accounts hijack administrator sessions. The updates were made available on September 29, 2026, and carry CVSS v3.0 base scores reaching 9.9.