Loading...
Loading...
Browse all stories on DeepNewz
VisitWhat level of new vulnerabilities will be identified in Google Vertex AI by June 30, 2025?
No new vulnerabilities • 25%
Minor vulnerabilities • 25%
Major vulnerabilities • 25%
Critical vulnerabilities • 25%
Reports from cybersecurity firms or Google's public disclosures
Google Fixes Vertex AI Vulnerabilities Leading to Privilege Escalation and Model Leaks
Nov 15, 2024, 05:10 AM
Google has fixed two critical vulnerabilities in its Vertex AI platform that could have led to privilege escalation and exfiltration of fine-tuned machine learning (ML) models and large language models (LLMs). The flaws, identified by researchers from Palo Alto Networks' Unit 42, allowed attackers to manipulate custom job permissions and AI Pipelines, gaining backdoor access to Google Cloud and Kubernetes. The vulnerabilities, which were reported by multiple sources, highlight significant risks in AI and cloud infrastructure security. One of the vulnerabilities is identified as CVE-2024-10979.
View original story
0 • 25%
1 • 25%
2 • 25%
3 or more • 25%
0-10 companies • 25%
11-20 companies • 25%
21-30 companies • 25%
More than 30 companies • 25%
Yes • 50%
No • 50%
0-2 • 25%
3-5 • 25%
6-8 • 25%
9 or more • 25%
Yes • 50%
No • 50%
Google • 25%
Microsoft • 25%
Apple • 25%
Other • 25%
Yes • 50%
No • 50%
Yes • 50%
No • 50%
Low • 25%
Medium • 25%
High • 25%
Critical • 25%
No • 50%
Yes • 50%
Yes • 50%
No • 50%
Very positive • 25%
Negative • 25%
Neutral • 25%
Somewhat positive • 25%