# Threat Modeling Encrypted Databases

DevFeed: [Threat Modeling Encrypted Databases](<https://devfeed.tech/articles/threat-modeling-encrypted-databases-37035.md>)

Original publisher: [Read original article](<https://shostack.org/blog/threat-modeling-encrypted-databases/>)

Author: Adam

Published: 2017-07-06T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Databases](<https://devfeed.tech/topics/databases.md>), [Encryption](<https://devfeed.tech/topics/encryption.md>), [Provable security](<https://devfeed.tech/topics/provable-security.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [crypto](<https://devfeed.tech/tags/crypto.md>), [databases](<https://devfeed.tech/tags/databases.md>), [paper](<https://devfeed.tech/tags/paper.md>), [provable-security](<https://devfeed.tech/tags/provable-security.md>), [security](<https://devfeed.tech/tags/security.md>)

## AI overview

This article summarizes a paper arguing that encrypted databases may not provide the security claimed against snapshot attackers. It explains that theoretical models may not capture the information revealed by compromised database systems or how attackers can infer plaintext data.

## Source excerpt

[no description provided]