Cloud computing security: A systematic review of security threats, protection strategies, and future trends
DOI:
https://doi.org/10.65405/eansgz16Keywords:
Cloud computing security, security threats, protection strategies, cybersecurity, multi-cloud computing, future challenges and opportunitiesAbstract
This research addresses cloud computing security through a systematic review of the scientific literature. Its aim is to identify the most prominent security threats facing cloud environments, analyze the protection strategies and techniques used to mitigate these threats, and explore future trends and research gaps in this field. The study employed the Systematic Literature Review (SLR) methodology, based on PRISMA guidelines for organizing the search, screening, selection, and analysis phases. 25 research papers were reviewed from various databases and scientific sources. Such as Google Scholar, Scopus and IEEE Access After examining titles and abstracts and reviewing the studies' compliance with inclusion and exclusion criteria, 17 studies were selected for the final analysis, while 8 were excluded for not aligning with the research topic or criteria. The analysis focused on a range of threats, most notably data breaches, cloud resource misconfiguration, account hijacking, distributed denial-of-service (DDoS) attacks, privacy risks, and vulnerabilities associated with multi-cloud and hybrid environments. The review also addressed key protection strategies, including encryption, identity and access management, multi-factor authentication, the zero-trust model, continuous monitoring, and leveraging artificial intelligence and machine learning technologies for attack detection and response. The research concluded that enhancing cloud computing security requires an integrated approach combining technical solutions, organizational policies, and human awareness, along with the development of flexible security mechanisms adaptable to evolving threats. The review also highlighted the need for further applied research on the security of multi-cloud environments, privacy protection, the use of artificial intelligence, and improving interoperability and compliance with security standards.
Downloads
References
1. Ahmad, W. (2024). Trends and Challenges in Securing Cloud Computing Environments: An Overview of Current Technologies. *Premier Journal of Computer Science*. https://doi.org/10.70389/PJCS.100004
2. Ahmadi, S. (2024). A Systematic Review of the Literature on Cloud Computing Security: Threats and Mitigation Strategies. *Journal of Information Security, 15(2), 148–167. https://doi.org/10.4236/jis.2024.152010
3. Ahmadi Pour, M., & Ahmadi Pour, M. (2026). Cybersecurity in Cloud Energy Storage Systems: A Comprehensive Review of Challenges and Future Trends. *Computers & Security*. https://doi.org/10.1016/j.cose.2026.105090
4. Alhadi, F. E., Al-Shaibani, N. A., and Al-Hamdil, S. A. (2024). A survey on cloud computing security. *Sana'a University Journal of Applied Sciences and Technology, 2*(4), 381–390. https://doi.org/10.59628/jast.v2i4.1025
5. Ali, S., Wadu, S. A., Yishit, A., Ghan, M. L., and Li, S. K. (2024). Enhancing cloud computing security: Unveiling the preventative potential of symmetric secret sharing technology in secure cloud computing. *Egyptian Journal of Informatics, 27*, 100519. https://doi.org/10.1016/j.eij.2024.100519
6. Ali, S., et al. (2025). Security and Privacy in Multi-Cloud and Hybrid Cloud Environments: Challenges, Strategies, and Future Trends. *Computers & Security*. https://doi.org/10.1016/j.cose.2025.104599
7. Alouffi, B., Hasnain, M., Alharbi, A., Alosaimi, W., Alyami, H., & Ayaz, M. (2021). A systematic review of the literature on cloud computing security: threats and mitigation strategies. *IEEE Access, 9*, 57792–57807. https://doi.org/10.1109/ACCESS.2021.3073203
8. Adeniji, S. A., Oke, F., Okolo, J., and Dobamo, A. (2025). Cybersecurity in the Age of Cloud Computing and the Internet of Things: Emerging Threats and Advanced Protection Technologies [Preliminary Version]. *TechRxiv*. https://doi.org/10.36227/techrxiv.175459370.08259901
9. Balboni, B., Taborda Barata, M., Bella, J., & Caparelli, F. (2025). Cloud Security Trends. In *The Computer and Information Security Handbook* (4th ed., pp. 1093–1108). Morgan Kaufmann. https://doi.org/10.1016/B978-0-443-13223-0.00066-7
10. Barbara, T. (2023). *Assessing Future Development Needs in Cloud Computing Cybersecurity: A Systematic Review of the Literature* [Master's Thesis, University of Malta].
11. Chen et al. (2025). Cloud Computing Security: Addressing Evolving Threats in the Digital Age [Preliminary Edition].
12. Dawood et al, (2023). Cyberattacks and Cloud Security: A Comprehensive Review. *Symmetry, 15*(11), 1981. https://doi.org/10.3390/sym15111981
13. Khalifa, N., and Al-Madani, W. (2024). Security in Cloud Computing: Threats, Mitigation Strategies, and Future Trends. *IET Conference Proceedings*, 2023(44). https://doi.org/10.1049/icp.2024.0974
14. Mastry, H. K., Mavani, S., Patel, R., and Goswami, A. (2024). Cloud Security Risks and Mitigation Strategies: A Review of Current Trends and Future Directions. *Journal of Basic Science and Engineering, 21*(1). https://doi.org/10.10399/JBSE.2025295959
15. Singh Sanger, A. K., & Johari, R. (2024). A Survey on Cloud Computing Security Issues. *AIP Conference Proceedings, 2919*(1), 120006. https://doi.org/10.1063/5.0175034
16. Thatikonda, F. K. (2023). Data security in cloud computing: challenges, solutions, and future trends. *Journal of Modern Data Science and Technology, 2*, 1–6.
17. Zanjiabadi Zadeh, H., Ghasemi, M., Vazifeh Doost, F., Qadkhoda Dehkhani, S., & Rahmani, M. (2023). Cloud computing security: a review of basic concepts, challenges, issues, requirements, security standards, and types of attacks in cloud computing. *Computing and Distributed Systems, 6*(1), 137–153.
18. Alwaer, T. A. (2026). Cloud-Based Internet of Things: Technologies, Applications, and Future Perspectives. مجلة العلوم الشاملة, 10(39), 1117-1134.
19. Bub, Z. M. (2025). E-Learning Security Issues and Challenges: An Analytical Study with Statistical Evaluation. مجلة العلوم الشاملة, 10(38), 2887-2897.
20. Alhaag, A. A. A. (2025). Comparative Performance Study on Symmetric and Asymmetric Encryption Algorithm: Comprehensive Report of a Comparative Study. مجلة العلوم الشاملة, 10(ملحق 38), 1242-1256.
21. Omran, N., & AlQudairi, A. A. A. (2026). A Proactive Hybrid Approach for Securing Container Systems Integrating Deep Kernel Monitoring with Two-Stage Machine Learning Classification. مجلة العلوم الشاملة, 10(ملحق 39), 877-893.
22. Athaba, M., & Blg, A. (2026). Design and Implementation of a Secure Data Exchange System for Government Institutions Using AES, RSA, and TLS. مجلة العلوم الشاملة, 10(39), 1144-1155.
23. Alhaag, A. A. A. (2025). Comparison between Database Search Algorithms (SQL and no SQL). مجلة العلوم الشاملة, 9(ملحق 36), 1810-1830.
24. Jetlawei, S. S., Dalla, L. O. B., Karal, Ö., Degirmenci, A., EL-sseid, M. A. M., Essgaer, M., & Alsharif, A. (2025). Temporal Intelligence and Algorithmic Equity: A Multi-Phase Framework for Predictive Student Success in Higher Education. مجلة العلوم الشاملة, 9(36), 1574-1595.
25. Ejreaw, A. M. A., Annowari, N. B., & Aswiss, A. A. R. (2025). Analysis Of Curriculum Quality, Faculty Expertise, And Infrastructure Impact On IT Student Outcomes At The Higher Institutes In Zliten, Libya. مجلة العلوم الشاملة, 10(37), 992-1010.












