HomeSecurityNew "LeakyLooker" vulnerabilities in Google Looker Studio

New “LeakyLooker” vulnerabilities in Google Looker Studio

Cybersecurity researchers have uncovered nine cross-platform vulnerabilities in Google Looker Studio (LeakyLooker), which could allow attackers to execute arbitrary SQL queries on victim databases and extract sensitive data from organizations' Google Cloud environments.

See also: Anthropic vs. Pentagon: Support from Google and OpenAI

LeakyLooker

These vulnerabilities have been collectively named LeakyLooker by Tenable. There is no evidence that these vulnerabilities have been exploited in practice. After a responsible disclosure in June 2025, the issues have been addressed by Google.

The vulnerabilities include:

  • Cross-Site Unauthorized Access
  • Zero-Click SQL Injection in Database Links
  • Zero-Click SQL Injection via Stored Credentials
  • Cross-Site SQL Injection in BigQuery via Native Functions
  • Cross-Source Data Leakage via Hyperlinks
  • Cross-Database SQL Injection in Spanner and BigQuery via Custom Queries on a Source Data Set
  • Cross-Database SQL Injection in BigQuery and Spanner via the Connection API
  • Cross-Source Data Leakage via Image Rendering
  • Cross XS Leak in Arbitrary Data Sources with Frame Counting and Temporal Oracles
  • Cross-Wallet Denial via BigQuery

See also: Google: Half of 2025's zero-days targeted businesses

New vulnerabilities "LeakyLooker" in Google Looker Studio

“The vulnerabilities broke key design assumptions, exposed a new class of attacks, and could allow attackers to export, import, and delete data in the victims’ services and Google Cloud environment,” security researcher Liv Matan in a report shared with The Hacker News.

Successful exploitation of cross‑user vulnerabilities could allow malicious users to gain access to entire datasets and projects across different cloud users. Attackers could scan for public Looker Studio reports or gain access to private ones that use these connectors (e.g., BigQuery) and take control of the databases, allowing them to execute arbitrary SQL queries across the owner's entire GCP project.

Alternatively, if a victim creates a report as public or shares it with a specific recipient and uses a data source connected via JDBC such as PostgreSQL, the attacker can exploit a logical flaw in the report copy function that allows cloning of reports while retaining the original owner's credentials, allowing them to delete or modify tables.

See also: Google fixes 10 serious vulnerabilities in Chrome

New vulnerabilities "LeakyLooker" in Google Looker Studio

Another high-impact vector described by the cybersecurity firm involved one-click data exfiltration, where sharing a specially crafted report forces the victim's browser to execute malicious code that communicates with a project controlled by the attacker to reconstruct entire databases from log files.

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Absentee Mia
Absentee Miahttps://www.secnews.gr
Being your self, in a world that constantly tries to change you, is your greatest achievement

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS