Skip to content

New CS proposal: NoSQL Security Cheat Sheet #1851

@KadirArslan

Description

@KadirArslan

What is the proposed Cheat Sheet about?

Cheat sheet will be about guidance to reduce risk when using NoSQL systems.

What security issues are commonly encountered related to this area?

NoSQL Injections
Exposed Interface
Public APIs and CORS

What is the objective of the Cheat Sheet?

Provide clear, actionable defensive patterns for developers and operators of NoSQL databases.

What other resources exist in this area?

https://www.mongodb.com/docs/manual/security/
https://owasp.org/www-project-web-security-testing-guide/latest/4-Web_Application_Security_Testing/07-Input_Validation_Testing/05.6-Testing_for_NoSQL_Injection

Metadata

Metadata

Assignees

Labels

ACK_OBTAINEDIssue acknowledged from core team so work can be done to fix it.NEW_CSIssue about the creation of a new cheat sheet.

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions