Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting
Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting
thehackernews.com
Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting
Google fixed a Vertex AI SDK flaw in v1.148.0 after Unit 42 showed bucket squatting could enable model hijacking and code execution.
