• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechCybersecurity

Oracle’s security conundrum

Barb Darrow
By
Barb Darrow
Barb Darrow
Down Arrow Button Icon
Barb Darrow
By
Barb Darrow
Barb Darrow
Down Arrow Button Icon
October 30, 2015, 10:24 AM ET
Oracle

At Oracle OpenWorld this week, company execs spent a good chunk of their stage time talking about security. Executive chairman Larry Ellison, for example, extolled the security virtues of Oracle’ s (ORCL) new M7 microprocessor, which he said bakes software security features from the latest release of its Oracle database right into the silicon.

Ellison mentioned several times that security problems arise because customers either do not enable the software’s security features or intentionally switch them off. That ability, however, will not be an option with the M7 since “we turn it on and you can’t turn it off,” he told show attendees.

The remarks come just weeks after Oracle,(ORCL) which had no comment on this story, released an eyebrow-raising set of 154 security fixes in a Critical Patch Update covering many of its key products. It is particularly important with this update that customers implement right away because the update includes “a number of fixes for very severe vulnerabilities,” according to a blog post about the update.

An IT consultant who works with federal agencies on Oracle implementations said this update was nothing short of a scandal because Oracle’s “entire product fleet was affected: pretty much every database, middleware web and app server. Everything,” said the specialist who requested anonymity because he works with the company’s customers.

Some of the vulnerabilities could give ​uncredentialed​ hackers the ability to remotely execute operations. In theory, that means a random-but-code-savvy Joe Shmoe with access to the Internet could run database queries on your business system, or even change data values. “That’s bad,” the consultant said.

The gnarly issue of patching software is not unique to Oracle, but because the company has made a point of calling its own products “unbreakable,” it pretty much put a bullseye on its own back. Hackers love a good challenge after all.

Gartner (IT)research director Lawrence Pingree said technology providers have to issue patches promptly to keep customers safer from data breaches. “It is quite well known in the security industry that one of the best ways to avoid a data breach is to simply make sure you are deploying patches quickly,” he said via email.

But, although patch updates are standard operating procedure, Oracle is in the spotlight because so many customers use the company’s databases and financial applications to run their businesses, which leaves little room for tolerance or error. We’re not talking about Candy Crush here.

It also doesn’t help that many corporate customers have come to resent Oracle’s technical support and maintenance fees. If you’re paying 22% of your license cost to stay supported, you have high expectations when it comes to security.

Meanwhile, it probably did not help Oracle’s relationships when in August Mary Ann Davidson, Oracle’s chief security officer, took to her blog to chastise corporate customers for performing their own security tests on company software. In the post she even noted that such tests could violate their licensing agreements. The blog was quickly pulled down and Oracle backed away from her claims.

Never ones to let a good crisis go to waste, tech companies are using these security woes to push customers to move to what they’re painting as cloud Nirvana. As Oracle CEO Mark Hurd stressed during his keynote, most enterprise applications are now 20 years old—that’s a lot of legacy code that needs to be maintained, bolstered, and updated. Oracle’s new pitch is for customers to move to the cloud—Oracle’s cloud of course. “We are fully patched, fully secured, fully encrypted,” Hurd noted.

For more on data security from industry leaders including Arlette Hart, the chief information security officer of the FBI, be sure to check out the Structure Conference next month.

 

Follow Barb Darrow on Twitter at @gigabarb. Read her Fortune coverage at fortune.com/barb-darrow or subscribe via her RSS feed.

And please subscribe to Data Sheet, Fortune’s daily newsletter on the business of technology.

 

About the Author
Barb Darrow
By Barb Darrow
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

Qualcomm CEO Cristiano Amon says 2026 is the year AI agents go mainstream—and the smartphone’s reign as your primary device is ending
AIFortune 500: Titans and Disruptors of Industry
Qualcomm CEO Cristiano Amon says 2026 is the year AI agents go mainstream—and the smartphone’s reign as your primary device is ending
By Fortune EditorsMay 10, 2026
8 hours ago
The global economy is experiencing the largest capex cycle ever, with nearly $5 trillion seen by the end of the decade—and it’s not all AI spending
EnergyAlternative energy
The global economy is experiencing the largest capex cycle ever, with nearly $5 trillion seen by the end of the decade—and it’s not all AI spending
By Jason MaMay 10, 2026
9 hours ago
AI wins have Alphabet poised to become world’s biggest company
AIAlphabet
AI wins have Alphabet poised to become world’s biggest company
By Ryan Vlastelica and BloombergMay 10, 2026
12 hours ago
OpenAI CEO Sam Altman says Gen Z and millennials are using ChatGPT like a ‘life advisor’—but college students might be one step ahead
TechOpenAI
OpenAI CEO Sam Altman says Gen Z and millennials are using ChatGPT like a ‘life advisor’—but college students might be one step ahead
By Sydney LakeMay 10, 2026
14 hours ago
Torsten Slok, wearing a suit, speaks on a stage with a gold and black background.
AILabor
‘The gains will be substantial’: The AI shock is looking a lot like the China shock, and a top economist says that’s actually good news
By Sasha RogelbergMay 10, 2026
16 hours ago
Young man working on laptop with headphones in modern coffeeshop
Future of Workskills gap
AI generated identical résumés for a man and a woman: Hers was more likely to be labeled ‘weak,’ while his got a 97% approval rating
By Eleanor PringleMay 10, 2026
18 hours ago

Most Popular

‘This is the way’: Elon Musk endorses Warren Buffett’s famed 5-minute plan to fix the national debt
Economy
‘This is the way’: Elon Musk endorses Warren Buffett’s famed 5-minute plan to fix the national debt
By Jacqueline MunisMay 10, 2026
14 hours ago
OpenAI CEO Sam Altman says Gen Z and millennials are using ChatGPT like a 'life advisor'—but college students might be one step ahead
Tech
OpenAI CEO Sam Altman says Gen Z and millennials are using ChatGPT like a 'life advisor'—but college students might be one step ahead
By Sydney LakeMay 10, 2026
14 hours ago
'Employers are increasingly turning to degree and GPA' in hiring: Recruiters retreat from ‘talent is everywhere,’ double down on top colleges
Future of Work
'Employers are increasingly turning to degree and GPA' in hiring: Recruiters retreat from ‘talent is everywhere,’ double down on top colleges
By Jake AngeloMay 9, 2026
2 days ago
Red flag test: former CEO explains why he rejects job candidates who say they can start right away
Success
Red flag test: former CEO explains why he rejects job candidates who say they can start right away
By Orianna Rosa RoyleMay 9, 2026
2 days ago
Ted Cruz says the quiet part out loud: Trump accounts are Social Security personal accounts as GOP senator reveals 'dirty little secret'
Politics
Ted Cruz says the quiet part out loud: Trump accounts are Social Security personal accounts as GOP senator reveals 'dirty little secret'
By Jason MaMay 9, 2026
1 day ago
Trump thinks he's flying to Beijing with leverage. China spent 6 years making sure he doesn't have any
Commentary
Trump thinks he's flying to Beijing with leverage. China spent 6 years making sure he doesn't have any
By Steve H. HankeMay 10, 2026
16 hours ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.