services / Google Cloud / Compute Engine backend services
Backend endpoints that may be referenced by load-balancer URL maps, or via Cloud CDN.
Used to serve dynamic content via a load balancer.
compute.backendServices.setSecurityPolicy
Allows an attacker to defeat content security, potentially gaining layer-7 access to the service.
Risks
Scope: HIGH
This privilege may grant access to sensitive data from a single organizational function, or allow interruption of a service supporting a single organizational function.
Links
Contributed by P0 Security
© 2023–present P0 Security and contributors to the IAM Privilege Catalog