39

Client reads about MomgoDB ransomware attacks online.

Him: I heard that the MongoDB is not secure, we should use something else in our system.
Me: Those databases got attacked because security features were turned off. If you want you can have an external security team to test the system when it's done.
Him: I don't wana take any risk, so I we should use something else.

We have been working on this system for almost a year and the final stage was supposed to be delivered in a month.

He wants me to replace it with MySQL

Comments
  • 14
    Changing a db system is not a walk in the park. I hope he is not asking you to do this for free.

    Your price for the change shouldn't update reflect your pain.
  • 3
    *should reflect your pain.
  • 4
    Ask him for the entire project budget as a change fee.
  • 2
    Well you know, also the database file of SQL databases can be encrypted by ransomware.
  • 0
    @dsteiner it's more like they made a big deal out of whole mDB situation online.
  • 4
    Tell him to leave the thinking to those who are actually qualified to do it... and who he's paying to do it
  • 0
    That's the problem with people forming their opinions solely on reading headlines. If it has any impact on your life (in this case, it's obviously very important news), you should at least click on the fucking article and read it.
  • 1
    damm that's a sad story.
    bill him dearly and ask if you could use postgreSQL instead of mySQL
  • 7
    Updates: once I quoted a number to him he agreed to stick with mongoDB and have security team do pen testing of the system
  • 4
    @gurbakhshish result!!! Funny how cost can put things into perspective.
  • 0
    @gurbakhshish Great! Good to hear.
Add Comment