gcloud-iam-unrestricted-decryption 漏洞列表
共找到 1 个与 gcloud-iam-unrestricted-decryption 相关的漏洞
📅 加载漏洞趋势中...
-
gcloud-iam-unrestricted-decryption: IAM Users with Unrestricted Data Decryption Permissions POC
Ensure that IAM users with data decryption permissions should use conditions to enforce strict controls, enhancing data protection and reducing risks of unauthorized decryption. For compliance, the Cloud KMS CryptoKey Decrypter (roles/cloudkms.cryptoKeyDecrypter), Cloud KMS Crypto Operator (roles/cloudkms.cryptoOperator), and Cloud KMS CryptoKey Encrypter/Decrypter (roles/cloudkms.cryptoKeyEncrypterDecrypter) roles must have a condition preventing data decryption with any KMS key.