Google Cloud Platform is a organization tracked across 41 threat clusters and 51 intelligence report mentions on ThreatCluster. First observed October 23, 2025; most recent activity July 21, 2026.
Google Cloud Platform (GCP) is Google's public cloud platform offering compute, storage, analytics, and security services used by organizations to host applications and security tooling, including SIEM deployments. It is significant in cybersecurity due to its widespread adoption and the sensitive access channels it exposes (such as service accounts and SIEM tenants), which can be abused if misconfigured or compromised.
APT41, a China-backed threat group, has been identified using a new zero-detection ELF backdoor targeting Linux cloud workloads across major platforms including AWS, Google Cloud Platform, Microsoft Azure, and Alibaba…
The TeamPCP threat group has expanded its supply chain attack campaign, compromising the Microsoft DurableTask Python client with versions v1.4.1, v1.4.2, and v1.4.3 found to contain a credential-stealing worm. This…
Recent security advisories have revealed multiple vulnerabilities in the Linux kernel affecting various Ubuntu releases, including 22.04 LTS, 20.04 LTS, 18.04 LTS, 25.10, and 24.04 LTS. These vulnerabilities are…
Multiple vulnerabilities have been identified in the Linux kernel affecting AMD processors, specifically in the floating point divider unit and Zen 2 and Zen 5 architectures. Local attackers could exploit these…
Data centers have become high-value targets for cyber and physical attacks, highlighted by drone strikes on Amazon Web Services facilities in March 2026. These incidents, attributed to Iranian forces, resulted in…
A critical vulnerability, named 'Rogue Agent', has been discovered in Google Cloud Platform's Dialogflow CX, allowing attackers to inject persistent malicious code into AI chatbots. This flaw, reported by Varonis Threat…
Researchers from Palo Alto Networks have identified a significant vulnerability in Google Cloud's Vertex AI platform, which allows attackers to exploit default permissions of AI agents. This vulnerability enables…
Tenable Research disclosed 'LeakyLooker', a set of nine cross-tenant vulnerabilities in Google Looker Studio, which could allow attackers to exfiltrate or modify data across Google services like BigQuery and Google…
The Digital Operational Resilience Act (DORA) has imposed stringent compliance requirements on financial organizations, particularly regarding third-party risk management. As a result, firms are now liable for the…
On May 20, 2026, GitHub confirmed a significant security breach involving a poisoned Visual Studio Code (VS Code) extension that compromised an employee's device. The attack, attributed to the TeamPCP hacking group,…