GCP Vertex AI SDK Flaw: How Bucket Squatting Bypasses Model Upload Controls
A privilege escalation flaw in Google's Vertex AI SDK lets attackers hijack model uploads by exploiting bucket naming conventions. Understanding the attack vector matters for anyone running ML workloads on GCP.
Read article →
