logo

LeakyLooker: Hacking Google Cloud’s Data via Dangerous Looker Studio Vulnerabilities

ID: d0ce2d58-3df1-5187-8eb7-ee74ca1882c8

STIX ID: report--d0ce2d58-3df1-5187-8eb7-ee74ca1882c8

Feed Name: Tenable Blog

Threat Score
75/100

Date Published: 2026-03-10

Date Updated: 2026-05-01

Author: Liv Matan

...
...

**LeakyLooker:** Tenable disclosed nine critical cross-tenant vulnerabilities in Google Looker Studio that enable 0‑click and 1‑click SQL injection and blind exfiltration, allowing attackers to read, modify, or delete data across BigQuery, Spanner, Cloud SQL, Sheets, and other connected services; Google has since patched the issues and Tenable provides technical details and remediation guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.