Skip to content
Vulnerabilities in Google Cloud Logging Expose Users to Attacks

Vulnerabilities in Google Cloud Logging Expose Users to Attacks

First seen 13 Feb 2026, 22:09 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 16:10 UTC

Tenable Research has disclosed two vulnerabilities in Google Cloud Logging. The first, a Denial of Wallet (DoW) vulnerability, allows attackers to execute costly BigQuery queries on a victim's project through a malicious URL. The second vulnerability enables data exfiltration from BigQuery datasets under certain conditions, also via a crafted URL.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 182d ago How this analysis works

Timeline

2026-02-13
Tenable discloses Denial of Wallet vulnerability in GCP Cloud Logging
2026-02-13
Tenable discloses data exfiltration vulnerability in GCP Cloud Logging

More articles in this cluster (1)

Following this threat?

Track Google Cloud Platform in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed