Securing PostgreSQL From External Attack
Presented by:

Bruce Momjian
Bruce Momjian is co-founder and core team member of the PostgreSQL Global Development Group, and has worked on PostgreSQL since 1996. He has been employed by EDB since 2006. He has spoken at many international open-source conferences and is the author of PostgreSQL: Introduction and Concepts, published by Addison-Wesley. Prior to his involvement with PostgreSQL, Bruce worked as a consultant, developing custom database applications for some of the world's largest law firms. As an academic, Bruce holds a Masters in Education, an honorary doctorate, was a high school computer science teacher, and lectures internationally.
Checkout the slides
This talk explores the ways attackers with no authorized database access can steal Postgres passwords, see database queries and results, and even intercept database sessions and return false data. Postgres supports features to eliminate all of these threats, but administrators must understand the attack vulnerabilities to protect against them. This talk covers all known Postgres external attack methods.
- Date:
- 2025 March 7 - 10:45
- Duration:
- 45 min
- Room:
- Grand Ballroom 1
- Conference:
- PGConf India, 2025
- Language:
- Track:
- Database Administration
- Difficulty:
- Easy
- Diamond Sponsor Hall by AWS
- Start Time:
- 2025 March 7 10:45
- Room:
- Neptune
- Using Postgres to locate the best coffee near you!
- Start Time:
- 2025 March 7 10:45
- Room:
- Grand Ballroom 2
- Being mindful of query optimizer differences between postgresql, Oracle and Db2 luw
- Start Time:
- 2025 March 7 10:45
- Room:
- Jupiter