Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Major Vulnerability in Azure Cosmos DB Exposed

Major Vulnerability in Azure Cosmos DB Exposed

Posted on July 31, 2026 By CWS

An alarming security flaw in Microsoft’s Azure Cosmos DB was uncovered by cybersecurity firm Wiz, revealing a potential threat to all databases within the service. This vulnerability, termed ‘CosmosEscape,’ could have granted attackers full access to any database by exploiting a platform-wide key.

Security Flaw Details

The CosmosEscape flaw allowed malicious actors to retrieve the primary key of any Cosmos DB account, enabling comprehensive read and write access. With these privileges, attackers could list and filter databases by organizational identifiers such as subscription and tenant IDs. This capability posed a significant risk, allowing for targeted attacks on specific organizations.

Wiz highlighted that the issue was serious due to Microsoft’s integration of Cosmos DB across services like Entra ID, Teams, and Copilot. This integration could have exposed sensitive data to unauthorized access if the vulnerability was exploited.

Exploiting the Gremlin API

The vulnerability was linked to the Gremlin API, a popular graph query language. The API relies on a custom engine that compiles queries into .NET code. Although restrictions were in place to prevent unauthorized access, Wiz found that .NET reflection could bypass these, allowing arbitrary code execution.

This discovery enabled Wiz to gain code execution on the DB Gateway, a service operating on multi-tenant clusters. The gateway used a signing key for accessing customer accounts’ primary keys, which was effective across various scopes including tenants and APIs.

Microsoft’s Response and Mitigation

Upon detecting the flaw, Wiz reported it to Microsoft in November 2025. The tech giant swiftly implemented a hotfix within two days to mitigate the vulnerability. By July, Microsoft had completed a long-term architectural update across all regions to enhance security.

Microsoft assured that extensive log reviews showed no unauthorized access beyond the controlled testing by researchers. Consequently, no customer data was compromised, and no further action is required by users. This response underscores the importance of rapid detection and remediation in cloud security.

This incident highlights the critical need for robust cybersecurity measures in cloud services, especially those holding vast amounts of sensitive data. As cloud technology continues to evolve, ongoing vigilance and proactive security updates remain paramount to safeguarding user data.

Security Week News Tags:Azure, cloud security, code execution, Cosmos DB, Cybersecurity, database security, Gremlin API, Microsoft, Vulnerability, Wiz

Post navigation

Previous Post: CareCloud Data Breach Affects 350,000 Individuals

Related Posts

Nigerian Involved in Hacking US Tax Preparation Firms Sentenced to Prison  Nigerian Involved in Hacking US Tax Preparation Firms Sentenced to Prison  Security Week News
Exploitation of React2Shell Surges – SecurityWeek Exploitation of React2Shell Surges – SecurityWeek Security Week News
Top Risks Boards Must Prioritize in 2026 Top Risks Boards Must Prioritize in 2026 Security Week News
Choosing a Clear Direction in the Face of Growing Cybersecurity Demands Choosing a Clear Direction in the Face of Growing Cybersecurity Demands Security Week News
Vulnerabilities Allow Disruption of Phoenix Contact UPS Devices Vulnerabilities Allow Disruption of Phoenix Contact UPS Devices Security Week News
Adobe Patches Critical Apache Tika Bug in ColdFusion Adobe Patches Critical Apache Tika Bug in ColdFusion Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Major Vulnerability in Azure Cosmos DB Exposed
  • CareCloud Data Breach Affects 350,000 Individuals
  • JetBrains Fixes Major Security Flaw in TeamCity
  • CISA Warns Water Sector of Rising Cyber Threats
  • Bank of America to Acquire UK Cybersecurity Leader

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Major Vulnerability in Azure Cosmos DB Exposed
  • CareCloud Data Breach Affects 350,000 Individuals
  • JetBrains Fixes Major Security Flaw in TeamCity
  • CISA Warns Water Sector of Rising Cyber Threats
  • Bank of America to Acquire UK Cybersecurity Leader

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark