Google AI Platform Bugs Leak Proprietary Enterprise LLMs
ID: 3403ad09-6473-5adb-8f4d-7e75967f6eb2
STIX ID: report--3403ad09-6473-5adb-8f4d-7e75967f6eb2
Feed Name: Dark Reading
Date Published: 2024-11-13
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
Palo Alto Networks Unit 42 disclosed two vulnerabilities in Google Vertex AI that together allowed privilege escalation via custom jobs/service agent permissions and deployment of a poisoned model capable of exfiltrating all fine-tuned ML and LLM models in a project; Google has applied fixes. The research highlights risks of model-to-model infection, excessive deployment permissions, and the need to separate and vet development/test models from production to prevent unauthorized access and proprietary model theft.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
