Google's Looker vulnerability may cause businesses to be taken over the system

Cát Tiên |

A vulnerability in Google's Looker may allow hackers to take control of the system and steal large-scale business data.

Cybersecurity researchers have just discovered two serious security vulnerabilities in Looker (Google-owned enterprise data analysis platform) that risk causing tens of thousands of companies worldwide to have their data stolen and take control of the system.

According to a report by cybersecurity company Tenable (USA), these vulnerabilities can allow hackers to deeply penetrate the Looker system, steal sensitive login information, secretly configure, and even control the entire server.

Looker is currently used by more than 60,000 companies in 195 countries, making the risk range particularly worrying.

One of the two main vulnerabilities, collectively named “LookOut”, involves remote code execution (RCE) chains.

Through this technique, the attacker can run malicious remote commands, thereby gaining complete control of the Looker server.

Researchers say hackers targeted the Looker version deployed on a cloud platform that could exploit vulnerabilities to cross-access different systems, while downloading the entire internal administrator database.

Tenable warns that losing control of Looker can lead to the risk of widespread business data leaks.

According to Liv Matan, Senior Research Engineer at Tenable, the level of danger of this vulnerability is particularly high because Looker acts as the "central nervous system" of business data.

An intrusion can allow the attacker to manipulate data or penetrate deeper into the company's private internal network," Ms. Liv Matan warned.

Tenable said Google responded quickly and deployed a patch for the managed Looker Cloud version after receiving a report of the vulnerability.

However, Looker self-storage organizations on private servers or on-site infrastructure are still at risk of being attacked if they do not proactively update patches.

These organizations must be responsible for patching vulnerabilities and protecting infrastructure from the risk of being taken over management," Tenable emphasized.

Looker is a business data analysis platform based in Santa Cruz, California, that allows companies to visualize, query and analyze data stored in the cloud. In 2019, Google acquired Looker for $2.6 billion to expand its data service and cloud computing ecosystem.

This deal is seen as part of Google's strategy to strengthen its capacity to provide data solutions, cloud storage and enterprise software.

Faced with the risk of vulnerability exploitation, Tenable recommends system administrators to urgently review the system. Specifically, businesses should check the . git/hooks/ folder in Looker projects to detect strange or illegal files, especially commands such as pre-push, post-commit or applypatch-msg, which are points that may have been infected with malware by hackers.

In addition, security teams need to analyze application logs, search for signs of internal connection abuse, abnormal SQL errors or SQL injection attack patterns targeting internal databases such as looker__iloker.

Experts warn that the incident is a strong reminder of data security risks in the cloud age, when a single vulnerability can put thousands of businesses at risk of serious breach.

Cát Tiên
RELATED NEWS

Google shares child protection features in cyberspace

|

On the occasion of Safer Internet Day (February 10), Google shares a series of new features to support Vietnamese families in building a healthy digital environment.

Google's Gemini closely follows ChatGPT in terms of user numbers

|

Google's Gemini application surpasses 750 million monthly active users, according to Q4/2025 report.

Google turns Chrome into a browser that supports artificial intelligence

|

Google is integrating Gemini into Chrome, turning the familiar browser into a powerful artificial intelligence-powered web browsing platform.

Canada cancels all flights to Cuba due to US sanctions

|

Air Canada announced the cancellation of all flights to Cuba due to the impact of the US blockade.

Vietnam International Finance Center in Ho Chi Minh City launched on February 11

|

Ho Chi Minh City launched the Vietnam International Financial Center on February 11, opening up expectations of attracting global capital flows and raising the city's financial position.

Trade unions take care of Tet for about 12 million workers

|

On the occasion of the Binh Ngo Lunar New Year 2026, Trade Union levels across the country have implemented many practical activities to care for union members and workers.

Nghe An education sector relieves pressure on 10th grade enrollment for the 2026–2027 school year

|

Nghe An - Faced with the sharp increase in the number of 9th grade students in Vinh City (old), the Nghe An education sector has advised on many effective solutions.

Western tourists enjoy experiencing Vietnamese Tet culture at a resort in Mui Ne

|

Lam Dong - In the days leading up to Lunar New Year, many resorts in Mui Ne organize cultural experience activities for Vietnamese Tet, creating attractive highlights for international tourists.

Google shares child protection features in cyberspace

NGUYỄN ĐĂNG |

On the occasion of Safer Internet Day (February 10), Google shares a series of new features to support Vietnamese families in building a healthy digital environment.

Google's Gemini closely follows ChatGPT in terms of user numbers

Hải Nguyễn |

Google's Gemini application surpasses 750 million monthly active users, according to Q4/2025 report.

Google turns Chrome into a browser that supports artificial intelligence

Cát Tiên |

Google is integrating Gemini into Chrome, turning the familiar browser into a powerful artificial intelligence-powered web browsing platform.