Experts reveal ‘LeakyLooker’ flaws let hackers gain access to user information in Google Looker Studio, so be on your guard



  • Tenable uncovers nine Looker Studio flaws dubbed LeakyLooker
  • Bugs enabled cross-tenant SQL injection and credential leaks
  • Google patched all vulnerabilities; users urged to review report access

A series of nine vulnerabilities in Google Looker Studio can be used to run arbitrary SQL queries against target databases and pull sensitive data from people’s Google Cloud environments, experts have revealed.

Security researchers Tenable found the flaws, dubbed LeakyLooker, which exposed sensitive data across Google Cloud environments, affecting those who are using pretty much any Looker Studio data connector, including Google Sheets, PostgreSQL, MySQL, and others.


https://cdn.mos.cms.futurecdn.net/NGKiUcJVFBC8HkMp9dTo9a-1920-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img