YoVDO

NoSQL Is Not NoVulnerable - Exploring Security Risks in NoSQL Databases

Offered By: OWASP Foundation via YouTube

Tags

Database Security Courses NoSQL Databases Courses JSON Courses Access Control Courses Web Application Security Courses Injection Attacks Courses Vulnerability Assessment Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the vulnerabilities of NoSQL databases in this informative conference talk from AppSecUSA 2017. Delve into how modern web applications using NoSQL databases, while potentially less susceptible to traditional SQL injection attacks, face new security challenges. Learn about the different query languages and complex data types used in NoSQL databases, and how these features can lead to new classes of vulnerabilities. Discover how limitations in security and access controls in NoSQL databases compared to traditional SQL databases can expose applications to risks. Examine specific attacks that exploit complex data types like JSON to bypass application-level access controls. Gain insights from Johannes Ullrich, Dean of Research at the SANS Technology Institute, as he surveys popular NoSQL databases and compares the threats applications may face when using these systems.

Syllabus

NoSQL Is Not NoVulnerable - Johannes Ullrich - AppSecUSA 2017


Taught by

OWASP Foundation

Related Courses

MongoDB for DBAs
MongoDB University
MongoDB for Node.js Developers
MongoDB University
Web Engineering II: Developing Mobile HTML5 Apps
Technische Hochschule Mittelhessen via iversity
Programming Mobile Services for Android Handheld Systems: Communication
Vanderbilt University via Coursera
HTML, CSS, and Javascript for Web Developers
Johns Hopkins University via Coursera