Vulnerabilities in Google Cloud Logging Expose Users to Attacks

Vulnerabilities in Google Cloud Logging Expose Users to Attacks

First seen 13 Feb 2026, 22:09 UTC Tenable 89% similarity 37.7

Article Content

Browse articles
ThreatCluster

Tenable Research has disclosed two vulnerabilities in Google Cloud Logging. The first, a Denial of Wallet (DoW) vulnerability, allows attackers to execute costly BigQuery queries on a victim's project through a malicious URL. The second vulnerability enables data exfiltration from BigQuery datasets under certain conditions, also via a crafted URL.

ThreatCluster AI

Timeline

2026-02-13
Tenable discloses Denial of Wallet vulnerability in GCP Cloud Logging
2026-02-13
Tenable discloses data exfiltration vulnerability in GCP Cloud Logging

Community

Browse all →