AttachMe: critical OCI vulnerability allows unauthorized access to customer cloud storage volumes
CYBERSECURITY FEATURED ANALYSIS

AttachMe: critical OCI vulnerability allows unauthorized access to customer cloud storage volumes

BY

Elad Gabay

SOURCE

Wiz Blog | RSS feed

DATE

READ

1 min read

Before it was patched, #AttachMe could have allowed attackers to access and modify any other users’ OCI storage volumes without authorization, thereby violating cloud isolation. Upon disclosure, the vulnerability …

Before it was patched, #AttachMe could have allowed attackers to access and modify any other users’ OCI storage volumes without authorization, thereby violating cloud isolation. Upon disclosure, the vulnerability was fixed within hours by Oracle. No customer action was required.