Zum Hauptinhalt springen
🪟 Windows TippsOffice 2024 Pro Plus zum Top-Preis! Lizenzen ab 16,66 €(18.09.2026 um 04:55 Uhr)
🕵️ SicherheitslückenCVE-2026-93468 | HGiga OAKclouds up to 106 path traversal (EUVD-2026-82642)(18.09.2026 um 05:10 Uhr)
🪟 Windows TippsOffice 2024 Pro Plus zum Top-Preis! Lizenzen ab 16,66 €(18.09.2026 um 04:55 Uhr)
🕵️ SicherheitslückenCVE-2026-93468 | HGiga OAKclouds up to 106 path traversal (EUVD-2026-82642)(18.09.2026 um 05:10 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

From Dev to Prod: Securing Postgres the Right Way | POSETTE: An Event for Postgres 2026

Author: Microsoft Developer - Bewertung: 4x - Views:15900

Learn how to secure Postgres from common blind spots across development and production. Sakshi Nasha (Software engineer) shares her approach in her talk “From Dev to Prod: Securing Postgres the Right Way” at POSETTE: An Event for Postgres 2026. Abstract: Is your Postgres database really secure, or just “working”? Why do security issues keep showing up after launch? Many teams rely on defaults until an incident proves otherwise.

This session tackles common Postgres security blind spots developers face in real systems. We’ll walk through practical techniques to secure access, data, and operations without slowing delivery and enhance the security posture of your application.

Key Takeaways:
1. Least-privilege roles, schema isolation, Role design and permission boundaries
2. Protecting data at rest and in transit
3. Safe extension and function usage
4. New Postgres enhancements around security and observability

Join me to turn security into a design habit, not an afterthought. Looking forward to engaging with you. Let’s make the Postgres world a little more fun and secure!!

Sakshi Nasha is a Software Engineer with a passion for building software and driving diversity in tech. An open-source enthusiast and OpenSearch Ambassador, she actively contributes to FOSS communities and speaks internationally on topics including PostgreSQL and open-source technologies.

► Video chapters:
⏩ 00:00 – Music & introduction
⏩ 03:06 – Common PostgreSQL security blind spots
⏩ 05:45 – SQL injection case study breakdown
⏩ 08:13 – Least privilege and role boundaries
⏩ 10:25 – Schema isolation for safer deployments
⏩ 12:25 – How search_path becomes a security risk
⏩ 15:02 – Exploiting security definer functions
⏩ 18:16 – Protecting data in transit and at rest
⏩ 22:16 – Postgres 17 and 18 security upgrades
⏩ 25:21 – Final security checklist and takeaways

📕 Everything you need to know about POSETTE: An Event for Postgres can be found at: https://posetteconf.com
✅ Learn more: watch more POSETTE talks: https://aka.ms/posette-playlist

📌 Let’s connect:
LinkedIn: https://www.linkedin.com/company/posetteconf/
X – @PosetteConf, https://x.com/PosetteConf
Mastodon – @posetteconf, https://mastodon.social/@posetteconf
Bluesky – @posetteconf.com, https://aka.ms/posette-on-bluesky

#PosetteConf #PostgreSQL #Security

Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten From Dev to Prod: Securing Postgres the Right Way | POSETTE: An Event for Postgres 2026

Thematisch verwandte Begriffe: From, Prod, Securing, Postgres · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-61591 | djust provides Phoenix LiveView-style reactive server-side rendering for…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
News ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

↗ Original-Quelle