Story perspectives
Critical Azure ML Vulnerability Exposes User Data to Attacks
7/4/2025
47 10
1 of 1
Story summary
- A serious vulnerability in Azure Machine Learning (AML) threatens users by allowing attackers with Storage Account access to run arbitrary code, potentially compromising entire subscriptions. Identified by Orca, this flaw arises from invoker script access. While Microsoft claims this is by design, users are strongly advised to tighten access controls and enhance security measures to protect their data.
