Back to directory
WRITEUP #1144

GCP CloudSQL Vulnerability Leads to Internal Container Access and Data Exposure

CloudPrivilege escalation
by@ofir_balassiano(Ofir Balassiano)
Program
Google (GCP)
Published
May 24, 2023
Added to HackDex
May 29, 2023
Read Full Writeuphttps://www.dig.security/post/gcp-cloudsql-vulnerability-leads-to-internal-container-access-and-data-exposure
RELATED WRITEUPS
Addressed AWS defaults risks: OIDC, Terraform and Anonymous to AdministratorAccess
CloudOIDC
Double Agent: Exploiting Pass-through Authentication Credential Validation in Azure AD
CloudPrivilege escalation
UnOAuthorized: Privilege Elevation Through Microsoft Applications
CloudPrivilege escalation
Escalating Privileges in Google Cloud via Open Groups
CloudPrivilege escalation
ConfusedFunction: A Privilege Escalation Vulnerability Impacting GCP Cloud Functions
CloudPrivilege escalation

Built with ❤️ by Shubham Rawat