Data protection

Storage bucket policy grant authenticated users object creator access

Risk Level

Informational (4)

Platform(s)
Compliance Frameworks

Description

Google Cloud Storage service allows you to store and retrieve data in a bucket. It was found that the {GcpStorageBucket} bucket is allowing Storage Bucket Object Creator permissions to all authenticated users. This could result with any authenticated user with a Google account executing object creation operations on the bucket.
  • Recommended Mitigation

    It is recommended to limit the bucket object creator access to authorized users only.