Tenable Uncovers ‘LeakyLooker’ Flaws Turning Google Looker Studio into a Cloud Backdoor
ID: 1f8d7834-14ea-57e1-acce-1065ba5aa5d7
STIX ID: report--1f8d7834-14ea-57e1-acce-1065ba5aa5d7
Feed Name: securityonline.info
Tenable disclosed “LeakyLooker,” a cluster of nine Looker Studio vulnerabilities that allowed attackers to abuse owner-credential paths and live data proxies to run arbitrary SQL, bypass filters, and exfiltrate or modify data across Google Cloud services (BigQuery, Sheets, Spanner, PostgreSQL, etc.). The research details techniques such as alias injection, use of native functions to execute SQL on report load, and a clever 'ping' exfiltration method using public BigQuery tables to reconstruct stolen data; Google has patched the issues but administrators are advised to audit report viewers and connectors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
