🔴 Double Agents: Exposing Security Blind Spots in GCP Vertex AI
Unit 42 researchers found that GCP Vertex AI Agent Engine's default P4SA service account has excessive permissions, enabling credential theft via the metadata service. This allows privilege escalation to read all consumer GCS buckets, access restricted Google-internal Artifact Registry container images, and expose internal source code.
https://unit42.paloaltonetworks.com/double-agents-vertex-ai
#gcp
Post #1395
460


- ❤ 1
- 👍 1
- 🔥 1