Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3192 articles · 168075 vulns · 37/41 feeds (7d)
← Back to list
EST
PRE-CVE

Universal Bucket Hijacking Vulnerability in Cloud Storage Services

56% confidence

Description

A bucket hijacking technique exploiting the global uniqueness of cloud storage bucket names allows attackers to delete and recreate buckets under their own accounts, rerouting data streams to exfiltrate sensitive information. This architectural flaw exists across major cloud providers (Google Cloud, AWS, Microsoft Azure) due to shared namespace risks and insufficient permissions for modifying data stream destinations.

Related News (1 articles)

Tier C
Palo Alto Unit 425d ago
The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
PublishedJun 22, 2026
Last enriched5d ago
Tags
cloud securitybucket hijackingdata exfiltrationnamespace risk
Trending Score10
Source articles1
Independent1
Info Completeness2/14
Missing: cve_id, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: reported
Confidence: 56%

Vulnerability Timeline

CVE Published
Jun 22, 2026
Discovered by ZDM
Jun 22, 2026