Join us

Vulnerability in GCP CloudSQL Leads to Data Exposure

Vulnerability in GCP CloudSQL Leads to Data Exposure

Research has shown that Google Cloud Platform's CloudSQL service, which supports database engines such as MySQL, PostgreSQL, and SQL Server, has a critical vulnerability that could expose sensitive customer data. The vulnerability enables escalation of initial privilege by adding the user/dbrootrole, making it possible to bypass security barriers and gain complete control of the database engine and host. This could lead to a major security incident or a breach of sensitive data. The vulnerability was identified and fixed through the Google VRP (Vulnerability Reward Program).


Only registered users can post comments. Please, login or signup.

Start blogging about your favorite technologies, reach more readers and earn rewards!

Join other developers and claim your FAUN account now!

Avatar

The FAUN

@faun
A worldwide community of developers and DevOps enthusiasts!
User Popularity
3k

Influence

273k

Total Hits

1

Posts