services / Google Cloud / Cloud domains registration

A registration is a resource representing a domain registration managed by Cloud Domains. It facilitates managing and configuring domain name registrations

Though the contents of domain registrations are public, this resource contains many permissions to update and configure domain registrations which are highly sensitive.


domains.​registrations.​configureDns

Allows updating DNS settings, including specifying custom name servers. Allows an attacker to route traffic on the domain.

Risks

Scope: HIGH

This privilege may grant access to sensitive data from a single organizational function, or allow interruption of a service supporting a single organizational function.

Links

  • https:​/​/​cloud.​google.​com/​domains/​docs/​access-​control
  • https:​/​/​cloud.​google.​com/​domains/​docs/​reference/​rest/​v1beta1/​projects.​locations.​registrations
  • https:​/​/​cloud.​google.​com/​domains/​docs/​overview
  • Contributed by P0 Security

    © 2023–present P0 Security and contributors to the IAM Privilege Catalog