NoSQL Is Not NoVulnerable - Exploring Security Risks in NoSQL Databases
Offered By: OWASP Foundation via YouTube
Course Description
Overview
Explore the vulnerabilities of NoSQL databases in this informative conference talk from AppSecUSA 2017. Delve into how modern web applications using NoSQL databases, while potentially less susceptible to traditional SQL injection attacks, face new security challenges. Learn about the different query languages and complex data types used in NoSQL databases, and how these features can lead to new classes of vulnerabilities. Discover how limitations in security and access controls in NoSQL databases compared to traditional SQL databases can expose applications to risks. Examine specific attacks that exploit complex data types like JSON to bypass application-level access controls. Gain insights from Johannes Ullrich, Dean of Research at the SANS Technology Institute, as he surveys popular NoSQL databases and compares the threats applications may face when using these systems.
Syllabus
NoSQL Is Not NoVulnerable - Johannes Ullrich - AppSecUSA 2017
Taught by
OWASP Foundation
Related Courses
MongoDB for DBAsMongoDB University MongoDB for Node.js Developers
MongoDB University Web Engineering II: Developing Mobile HTML5 Apps
Technische Hochschule Mittelhessen via iversity Programming Mobile Services for Android Handheld Systems: Communication
Vanderbilt University via Coursera HTML, CSS, and Javascript for Web Developers
Johns Hopkins University via Coursera