An Insightful View on Security and Performance of NoSQL Databases

被引:0
|
作者
Saxena, Upaang [1 ]
Sachdeva, Shelly [2 ]
机构
[1] Minjar Cloud Serv Private Ltd, Bangalore, Karnataka, India
[2] Jaypee Inst Informat Technol, Noida, India
来源
DATA SCIENCE AND ANALYTICS | 2018年 / 799卷
关键词
NoSQL; Security in NoSQL; Cassandra; Mongo DB; Redis; Big data;
D O I
10.1007/978-981-10-8527-7_54
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The recent advancement in cloud computing and distributed web applications has created the need to store large amount of data in distributed databases that provide high availability and scalability. Due to this problem, in recent years, a non-relational database is needed to scale the growing need of industry and at the same time, must be highly efficient. This gave rise to NoSQL databases which are highly scalable and can store large amount of data. NoSQL databases are-'Not Only SQL' databases and supports almost all the SQL features in addition to several other features. NoSQL is completely schema less and can store any kind of data. A large amount of data is stored in these databases every day, including sensitive data. Security of this sensitive data is an area of concern. Research looked into the security aspect of the top three open source NoSQL databases which are Mongo DB, Cassandra, and Redis. In this research, surprisingly, it has been found that data file encryption is missing in all three databases. Cassandra and Mongo DB are safe from Injection attacks, but there are many other ways to get into these databases and access the data at backend. Researchers provided useful methods to enhance the security for these databases and also evaluated the performance, after improvement in security.
引用
收藏
页码:643 / 653
页数:11
相关论文
共 50 条
  • [1] Security Issues in NoSQL Databases
    Okman, Lior
    Gal-Oz, Nurit
    Gonen, Yaron
    Gudes, Ehud
    Abramov, Jenny
    TRUSTCOM 2011: 2011 INTERNATIONAL JOINT CONFERENCE OF IEEE TRUSTCOM-11/IEEE ICESS-11/FCST-11, 2011, : 541 - 547
  • [2] Performance Analysis in NoSQL Databases, Relational Databases and NoSQL Databases as a Service in the Cloud
    Marrero, Luciano
    Olsowy, Verena
    Tesone, Fernando
    Thomas, Pablo
    Delia, Lisandro
    Pesado, Patricia
    COMPUTER SCIENCE - CACIC 2020, 2021, 1409 : 157 - 170
  • [3] Security of Sharded NoSQL Databases: A Comparative Analysis
    Zahid, Anam
    Masood, Rahat
    Shibli, Muhammad Awais
    2014 CONFERENCE ON INFORMATION ASSURANCE AND CYBER SECURITY (CIACS), 2014, : 1 - 8
  • [4] Security policies by design in NoSQL document databases
    Blanco, Carlos
    Garcia-Saiz, Diego
    Rosado, David G.
    Santos-Olmo, Antonio
    Peral, Jesus
    Mate, Alejandro
    Trujillo, Juan
    Fernandez-Medina, Eduardo
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2022, 65
  • [5] Security-Aware Elasticity for NoSQL Databases
    Naskos, Athanasios
    Gounaris, Anastasios
    Mouratidis, Haralambos
    Katsaros, Panagiotis
    MODEL AND DATA ENGINEERING, MEDI 2015, 2015, 9344 : 181 - 197
  • [6] DATABASES SECURITY ISSUES - A SHORT ANALYSIS ON THE EMERGENT SECURITY PROBLEMS GENERATED BY NoSQL DATABASES
    Nica, Elvira
    Tudorica, Bogdan George
    Dusmanescu, Dorel-Mihail
    Popescu, Gheorghe
    Breaz, Alina Maria
    ECONOMIC COMPUTATION AND ECONOMIC CYBERNETICS STUDIES AND RESEARCH, 2019, 53 (03): : 113 - 129
  • [7] A performance comparison of SQL and NoSQL databases
    Li, Yishan
    Manoharan, Sathiamoorthy
    2013 IEEE PACIFIC RIM CONFERENCE ON COMMUNICATIONS, COMPUTERS AND SIGNAL PROCESSING (PACRIM), 2013, : 15 - 19
  • [8] A Comparative Analysis of Security Features and Concerns in NoSQL Databases
    Ankomah, Evans
    Haruna, Charles Roland
    Akotoye, Francis Xavier Kofi
    Agyemang, Brighter
    Agyekum, Kwame Opuni-Boachie Obour
    Asante, Alexander
    Ephrim, Lawrence
    Kissiedu, Alexander N. T.
    FRONTIERS IN CYBER SECURITY, FCS 2022, 2022, 1726 : 349 - 364
  • [9] Security&privacy issues and challenges in NoSQL databases
    Sicari, Sabrina
    Rizzardi, Alessandra
    Coen-Porisini, Alberto
    COMPUTER NETWORKS, 2022, 206
  • [10] Review of NoSQL Databases and Performance Testing on HBase
    Naheman, Wumuti
    Wei, Jianxin
    PROCEEDINGS 2013 INTERNATIONAL CONFERENCE ON MECHATRONIC SCIENCES, ELECTRIC ENGINEERING AND COMPUTER (MEC), 2013, : 2304 - 2309