Today's Core Dump is brought to you by ThreatPerspective

GCP Cloud Composer Bug Let Attackers Elevate Access via Malicious PyPI Packages

Cybersecurity researchers have detailed a now-patched vulnerability in Google Cloud Platform (GCP) that could have enabled an attacker to elevate their privileges in the Cloud Composer workflow orchestration service that's based on Apache Airflow. "This vulnerability lets attackers with edit permissions in Cloud Composer to escalate their access to the default Cloud Build service account, which

Published: 2025-04-22T19:36:00











© Segmentation Fault . All rights reserved.

Privacy | Terms of Use | Contact Us