Open a database client, type a host and a password, click connect. In that one action you are trusting the network between you and the server, the server's claim about who it is, and the tool on your own machine that holds the password afterward. Each of those is a place data leaks.
Source: [Dev.to](https://dev.to/flextabledev/securing-your-database-connection-tls-ssh-tunnels-and-iam-from-the-ground-up-3pk8)