Pickle in the Middle – Hijacking Vertex AI Model Uploads for Cross-Tenant RCE
CYBERSECURITY FEATURED ANALYSIS

Pickle in the Middle – Hijacking Vertex AI Model Uploads for Cross-Tenant RCE

BY

Ori Hadad

SOURCE

Unit 42

DATE

READ

1 min read

Unit 42 discovered a Vertex AI Python SDK vulnerability that allows remote code execution via bucket squatting. Read the article for more. The post Pickle in the Middle – Hijacking Vertex AI Model Uploads for …

Unit 42 discovered a Vertex AI Python SDK vulnerability that allows remote code execution via bucket squatting. Read the article for more. The post Pickle in the Middle – Hijacking Vertex AI Model Uploads for Cross-Tenant RCE appeared first on Unit 42.