Cloud computing security: A systematic review of security threats, protection strategies, and future trends
DOI:
https://doi.org/10.65405/eansgz16الكلمات المفتاحية:
أمن الحوسبة السحابية، التهديدات الأمنية، استراتيجيات الحماية، الأمن السيبراني، الحوسبة السحابية المتعددة، التحديات والفرص المستقبليةالملخص
يتناول هذا البحث أمن الحوسبة السحابية من خلال مراجعة منهجية للأدبيات العلمية. ويهدف إلى تحديد أبرز التهديدات الأمنية التي تواجه بيئات الحوسبة السحابية، وتحليل استراتيجيات وتقنيات الحماية المستخدمة للتخفيف من هذه التهديدات، واستكشاف التوجهات المستقبلية والفجوات البحثية في هذا المجال. استخدمت الدراسة منهجية المراجعة المنهجية للأدبيات (SLR)، استنادًا إلى إرشادات PRISMA لتنظيم مراحل البحث والفرز والاختيار والتحليل. تمت مراجعة 25 بحثًا علميًا من قواعد بيانات ومصادر علمية متنوعة مثل Google Scholar, and Scopus, IEEE Access بعد فحص العناوين والملخصات ومراجعة مدى توافق الدراسات مع معايير الإدراج والاستبعاد، تم اختيار 17 دراسة للتحليل النهائي، بينما تم استبعاد 8 دراسات لعدم توافقها مع موضوع البحث أو معاييره.
ركز التحليل على مجموعة من التهديدات، أبرزها اختراقات البيانات، وسوء تكوين موارد الحوسبة السحابية، واختراق الحسابات، وهجمات الحرمان من الخدمة الموزعة (DDoS)، ومخاطر الخصوصية، والثغرات الأمنية المرتبطة ببيئات الحوسبة السحابية المتعددة والهجينة. تناولت المراجعة أيضًا استراتيجيات الحماية الرئيسية، بما في ذلك التشفير، وإدارة الهوية والوصول، والمصادقة متعددة العوامل، ونموذج انعدام الثقة، والمراقبة المستمرة، والاستفادة من تقنيات الذكاء الاصطناعي والتعلم الآلي للكشف عن الهجمات والاستجابة لها. وخلص البحث إلى أن تعزيز أمن الحوسبة السحابية يتطلب نهجًا متكاملًا يجمع بين الحلول التقنية والسياسات التنظيمية والوعي البشري، إلى جانب تطوير آليات أمنية مرنة قابلة للتكيف مع التهديدات المتطورة. كما سلطت المراجعة الضوء على الحاجة إلى مزيد من البحوث التطبيقية حول أمن بيئات الحوسبة السحابية المتعددة، وحماية الخصوصية، واستخدام الذكاء الاصطناعي، وتحسين قابلية التشغيل البيني والامتثال لمعايير الأمان.
التنزيلات
المراجع
1. Ahmad, W. (2024). Trends and Challenges in Securing Cloud Computing Environments: An Overview of Current Technologies. *Premier Journal of Computer Science*. https://doi.org/10.70389/PJCS.100004
2. Ahmadi, S. (2024). A Systematic Review of the Literature on Cloud Computing Security: Threats and Mitigation Strategies. *Journal of Information Security, 15(2), 148–167. https://doi.org/10.4236/jis.2024.152010
3. Ahmadi Pour, M., & Ahmadi Pour, M. (2026). Cybersecurity in Cloud Energy Storage Systems: A Comprehensive Review of Challenges and Future Trends. *Computers & Security*. https://doi.org/10.1016/j.cose.2026.105090
4. Alhadi, F. E., Al-Shaibani, N. A., and Al-Hamdil, S. A. (2024). A survey on cloud computing security. *Sana'a University Journal of Applied Sciences and Technology, 2*(4), 381–390. https://doi.org/10.59628/jast.v2i4.1025
5. Ali, S., Wadu, S. A., Yishit, A., Ghan, M. L., and Li, S. K. (2024). Enhancing cloud computing security: Unveiling the preventative potential of symmetric secret sharing technology in secure cloud computing. *Egyptian Journal of Informatics, 27*, 100519. https://doi.org/10.1016/j.eij.2024.100519
6. Ali, S., et al. (2025). Security and Privacy in Multi-Cloud and Hybrid Cloud Environments: Challenges, Strategies, and Future Trends. *Computers & Security*. https://doi.org/10.1016/j.cose.2025.104599
7. Alouffi, B., Hasnain, M., Alharbi, A., Alosaimi, W., Alyami, H., & Ayaz, M. (2021). A systematic review of the literature on cloud computing security: threats and mitigation strategies. *IEEE Access, 9*, 57792–57807. https://doi.org/10.1109/ACCESS.2021.3073203
8. Adeniji, S. A., Oke, F., Okolo, J., and Dobamo, A. (2025). Cybersecurity in the Age of Cloud Computing and the Internet of Things: Emerging Threats and Advanced Protection Technologies [Preliminary Version]. *TechRxiv*. https://doi.org/10.36227/techrxiv.175459370.08259901
9. Balboni, B., Taborda Barata, M., Bella, J., & Caparelli, F. (2025). Cloud Security Trends. In *The Computer and Information Security Handbook* (4th ed., pp. 1093–1108). Morgan Kaufmann. https://doi.org/10.1016/B978-0-443-13223-0.00066-7
10. Barbara, T. (2023). *Assessing Future Development Needs in Cloud Computing Cybersecurity: A Systematic Review of the Literature* [Master's Thesis, University of Malta].
11. Chen et al. (2025). Cloud Computing Security: Addressing Evolving Threats in the Digital Age [Preliminary Edition].
12. Dawood et al, (2023). Cyberattacks and Cloud Security: A Comprehensive Review. *Symmetry, 15*(11), 1981. https://doi.org/10.3390/sym15111981
13. Khalifa, N., and Al-Madani, W. (2024). Security in Cloud Computing: Threats, Mitigation Strategies, and Future Trends. *IET Conference Proceedings*, 2023(44). https://doi.org/10.1049/icp.2024.0974
14. Mastry, H. K., Mavani, S., Patel, R., and Goswami, A. (2024). Cloud Security Risks and Mitigation Strategies: A Review of Current Trends and Future Directions. *Journal of Basic Science and Engineering, 21*(1). https://doi.org/10.10399/JBSE.2025295959
15. Singh Sanger, A. K., & Johari, R. (2024). A Survey on Cloud Computing Security Issues. *AIP Conference Proceedings, 2919*(1), 120006. https://doi.org/10.1063/5.0175034
16. Thatikonda, F. K. (2023). Data security in cloud computing: challenges, solutions, and future trends. *Journal of Modern Data Science and Technology, 2*, 1–6.
17. Zanjiabadi Zadeh, H., Ghasemi, M., Vazifeh Doost, F., Qadkhoda Dehkhani, S., & Rahmani, M. (2023). Cloud computing security: a review of basic concepts, challenges, issues, requirements, security standards, and types of attacks in cloud computing. *Computing and Distributed Systems, 6*(1), 137–153.
18. Alwaer, T. A. (2026). Cloud-Based Internet of Things: Technologies, Applications, and Future Perspectives. مجلة العلوم الشاملة, 10(39), 1117-1134.
19. Bub, Z. M. (2025). E-Learning Security Issues and Challenges: An Analytical Study with Statistical Evaluation. مجلة العلوم الشاملة, 10(38), 2887-2897.
20. Alhaag, A. A. A. (2025). Comparative Performance Study on Symmetric and Asymmetric Encryption Algorithm: Comprehensive Report of a Comparative Study. مجلة العلوم الشاملة, 10(ملحق 38), 1242-1256.
21. Omran, N., & AlQudairi, A. A. A. (2026). A Proactive Hybrid Approach for Securing Container Systems Integrating Deep Kernel Monitoring with Two-Stage Machine Learning Classification. مجلة العلوم الشاملة, 10(ملحق 39), 877-893.
22. Athaba, M., & Blg, A. (2026). Design and Implementation of a Secure Data Exchange System for Government Institutions Using AES, RSA, and TLS. مجلة العلوم الشاملة, 10(39), 1144-1155.
23. Alhaag, A. A. A. (2025). Comparison between Database Search Algorithms (SQL and no SQL). مجلة العلوم الشاملة, 9(ملحق 36), 1810-1830.
24. Jetlawei, S. S., Dalla, L. O. B., Karal, Ö., Degirmenci, A., EL-sseid, M. A. M., Essgaer, M., & Alsharif, A. (2025). Temporal Intelligence and Algorithmic Equity: A Multi-Phase Framework for Predictive Student Success in Higher Education. مجلة العلوم الشاملة, 9(36), 1574-1595.
25. Ejreaw, A. M. A., Annowari, N. B., & Aswiss, A. A. R. (2025). Analysis Of Curriculum Quality, Faculty Expertise, And Infrastructure Impact On IT Student Outcomes At The Higher Institutes In Zliten, Libya. مجلة العلوم الشاملة, 10(37), 992-1010.












