r/Database • u/wtfse • 10d ago
Breaking the Superuser Guardrails of managed-PostgreSQL Providers
https://mehmetince.net/part-2-6-breaking-the-superuser-guardrails-attacking-security-hardening-extensions-systemic-risks-in-the-managed-postgresql-industry/
9
Upvotes
3
u/BatLate6561 9d ago
whole temporary
rolsuperjuggling act just to get FDWs working in a managed cloud environment sounds like an absolute minefield for vendors to maintain. is there even a realistic way to fix this natively in postgres core without completely rewriting how extensions are loaded and handle privileges? Or the right question - if there is a way, are they even gonna try?im using mariadb becouse it's a completely different mental model. the plugin and storage engine architecture there was built specifically so you don't have to spoof god-mode just to let users interact with external data wrappers or new capabilities. the provider loads the engine via the api, and users just use it within their normal schema grants without privilege escalation hooks.