Forum OpenACS Q&A: Bugtraq: Hackproofing Oracle Application Server paper

I probably won't usually post anything about the Application Server (there are a few security issues that I didn't post today), but this seemed like it might be useful for some people:
Date: Wed, 6 Feb 2002 06:43:59 -0000
From: David Litchfield 
To: bugtraq@securityfocus.com
Subject: Hackproofing Oracle Application Server paper

Howdy,
I've written a white-paper, "Hackproofing Oracle Application Server."
It
covers vulnerable areas and what must done to secure the box. Anyone
interested may get a copy from
http://www.nextgenss.com/papers/hpoas.pdf .
Cheers,
David Litchfield
http://www.nextgenss.com/