Security Around MySQL

Danil Zburivsky (The Pythian Group)
Average rating: ***..
(3.50, 4 ratings)

In this talk we’ll look at the different ways to compromise MySQL security in typical deployment scenarios through vulnerabilities in the underlying hardware, the operating system, applications, and the network. We will not be focusing just on security from hackers, but from internal sources as well who may be intending to steal data.

Some of these methods include:
  • using memory dumps/straces to extract encryption keys/encrypted disk data
  • using DRAC/RSA cards to gain access to secure servers
  • gathering passwords at the switch layer.
We’ll also discuss ways to prevent these attacks on the MySQL data including:
  • encryption both at the network and disk level
  • advanced access controls including AppArmor and SELINUX
  • network security
Photo of Danil Zburivsky

Danil Zburivsky

The Pythian Group

Originally from Ukraine, Danil has been working with different RDBMS since early years in the university. Received Master’s Degree in Applied Math at the Donetsk National University in Ukraine where he also worked part time as a database developer for an accounting system. Danil got the taste for MySQL while working as a DBA for Sonopia Corp, where he participated in database design and support for social mobile network application. Currently helping people all over the world to solve problems with their MySQL systems as Team Lead at Pythian (www.pythian.com), a leading global database and application infrastructure services company.

Comments on this page are now closed.

Comments

Picture of Sheeri K. Cabral
Sheeri K. Cabral
04/16/2010 10:23am PDT

Video is online at www.youtube.com/watch?v=kro...

  • Oracle
  • Monty Program
  • Calpont
  • Facebook
  • Gear6
  • Infobright, Inc
  • JasperSoft
  • Joyent
  • Kickfire
  • NorthScale, Inc.
  • Percona
  • Schooner Information Technology
  • Solid Quality Mentors (SolidQ)
  • Intel
  • Pentaho
  • Linux Pro Magazine

Sponsorship Opportunities

For information on exhibition and sponsorship opportunities at the conference, contact Yvonne Romaine at yromaine@oreilly.com

Download the O'Reilly MySQL Conference & Expo Sponsor/ Exhibitor Prospectus

Media Partner Opportunities

Download the Media & Promotional Partner Brochure (PDF) for information on trade opportunities with O'Reilly conferences or contact mediapartners@ oreilly.com

Press and Media

For media-related inquiries, contact Maureen Jennings at maureen@oreilly.com

O'Reilly MySQL Conference Newsletter

To stay abreast of conference news and to receive email notification when registration opens, please sign up for the O'Reilly MySQL Conference newsletter (login required).

Contact Us

View a complete list of O'Reilly MySQL Conference contacts.