This presentation presented database Security topic and free to modify and access to use it for presentation purposes
Size: 3.47 MB
Language: en
Added: May 31, 2024
Slides: 6 pages
Slide Content
Databases
Security
FATIMA JAWAID csc-20f-211
FIZZA MAZHAR csc-18f-
Securing the Database may be the single biggest action an
organization can take to protect its asset.
DAVID C. KNOX
Let’s understand by EQUIFAX incident 2017,
why we need to secure databases ?
Cause:Thebreachwascaused
byavulnerabilityinApache
Struts,anopen-sourceweb
applicationframeworkthat
Equifaxusedforoneofitsweb
applications.Despiteapatch
beingavailableforthe
vulnerabilityinMarch2017,
Equifaxfailedtoapplyitina
timely manner.
IfEquifaxhadupdatedtheir
softwareandsecuredtheir
databasebetter,thehackersmight
not have been able to steal the data.
Database Security
2
Common Database Threats
SQL Injection
Malware
Privilege Abuse
Unpatched Vulnerabilities
Insider Threats
Backup Data Exposure
Weak Authentication
Denial of Service (DoS) Attacks
PhysicalSecurityThreats
1.
2.
3.
4.
Core Principles of Database Security
Access Control
Encryption
Backup and Recovery
Auditing and Monitoring &
Database Security Policies
Database Security
4
1.
2.
3.
4.
5.
BEST PRACTICES:
Securing a database is
critical to protect
sensitive information and
ensure data integrity
Use Strong Authentication and
Authorization
Regular Security Assessments
Regular Updates and Patching
Backup Regularly
Use secure connections (SSL/TLS)
1.
2.
3.
4.
5.
Database Security
5
Thank you
•Thanks for your commitment and the time to hear
me out."
ANY QUESTION OR SUGESTION ABOUT MY
WORK.