icon

Digital safety starts here for both commercial and personal Use...

Defend Your Business Against the Latest WNY Cyber Threats We offer Safe, Secure and Affordable Solutions for your Business and Personal Networks and Devices.



WNYCyber is there to help you to choose the best service providers in Western New York... We DO NOT provide the services ourselves, as we are Internet Programmers who have to deak daily with Cyber Threats... (Ugghhh)... So we know what it's like and what it takes to protect OUR and OUR CUSTOMERS DATA... We built this Website to help steer you to those that can give you the best service at realistic and non-inflated prices. We do charge or collect any fees.

Google Cloud Build Bug Lets Hackers Launch Supply Chain Attacks

Cyber Security Threat Summary:
A critical design flaw in Google Cloud Build has been discovered by cloud security firm Orca Security, allowing hackers to launch supply chain attacks. The flaw, named Bad.Build, enables attackers to escalate privileges and gain unauthorized access to Google Artifact Registry code repositories. By impersonating the service account for Google Cloud Build, threat actors can run API calls against the artifact registry, inject malicious code into applications, and potentially compromise the entire supply chain.

Security Officer Comments:
This vulnerability poses significant risks, including disrupting applications, data theft, and spreading malware. While Google has implemented a partial fix by revoking certain permissions, the underlying vulnerability in the Artifact Registry remains unresolved. This is still relatively newly disclosed information. The IT-ISAC will continue to monitor and report to the membership when additional details are disclosed.

Suggested Correction(s):
Organizations are advised to closely monitor the default Google Cloud Build service account, adhere to the Principle of Least Privilege, and employ cloud detection and response capabilities to detect anomalies and reduce the risk of supply chain attacks. Additionally, Google Cloud Build customers should customize their service account permissions and remove excessive entitlement credentials.

Link(s):
https://www.bleepingcomputer.com/