AI · 184 giorni fa
Palo Alto Networks Unit 42 ha rilevato che l'agente di servizio predefinito di Vertex AI (P4SA) dispone di permessi eccessivamente ampi. Un agente Vertex distribuito che effettua chiamate al metadata service di Google può esporre le credenziali P4SA, l'ID del progetto ospitante, l'identità dell'agente e gli host scopes. Unit 42 ha usato quelle credenziali per accedere al progetto del cliente e leggere tutti i bucket di Google Cloud Storage, trasformando un agente distribuito in una potenziale minaccia interna.
4 fonti che coprono questa storia
Google Addresses Vertex Security Issues After Researchers Weaponize AI Agents
Palo Alto Networks has disclosed the details of its analysis of Google Cloud Platform’s Vertex AI.
Google's Vertex AI Is Over-Privileged. That's a Problem
Palo Alto Networks researchers show attackers could exploit AI agents on Google's Vertex AI to steal data and break into restricted cloud infrastructure.
Vertex AI Vulnerability Exposes Google Cloud Data and Private Artifacts
Unit 42 found excessive P4SA permissions in Vertex AI, enabling credential theft and cloud data exposure, increasing breach risk.
Double Agents: Exposing Security Blind Spots in GCP Vertex AI
Unit 42 uncovers a "double agent" flaw in Google Cloud's Vertex AI, demonstrating how overprivileged AI agents can compromise cloud environments.
Part of the PlainSec briefing for 2026-04-01