Pentesting NoSQL DB’s Using NoSQL Exploitation Framework

By Francis Alexander on 12 Sep 2014 @ 44con
📹 Video 🔗 Link

Presentation Material

Abstract

The rise of NoSQL databases and their simplicity has made corporates as well as end users have started to move towards NoSQL,However is it safe?.Does NoSQL mean we will not have to worry about Injection attacks. Yes We Do. This paper concentrates on exploiting NoSQL DB’s especially with its reach towards Mongodb,Couchdb and Redis and automating it using the NoSQL Exploitation Framework.