Critical Vulnerability In AI-As-A-Service Provider Let Attackers Access Sensitive Data
ID: 5d9ef3fa-cff0-56b5-96d9-37c3ff381d96
STIX ID: report--5d9ef3fa-cff0-56b5-96d9-37c3ff381d96
Feed Name: cybersecurityNews.com
A critical tenant-separation vulnerability in the Replicate AI platform allowed a researcher-created malicious Cog container to achieve RCE, gain root within a Kubernetes container, and exploit shared network/Redis connections to inject Lua/Redis commands into an authenticated TCP stream. This technique enabled interception and modification of queued customer prediction requests (including changing webhooks to attacker-controlled endpoints), risking exposure or tampering of prompts, model outputs, and proprietary data; the issue was responsibly disclosed and fixed before any customer data was reported compromised.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
