How Cloudflare addressed a cross-tenant data exposure vulnerability in Containers
Curated from Cloudflare Blog
Cross-tenant data leakage in serverless and containerized environments remains a persistent nightmare for platform engineers. When a hypervisor or container runtime fails to properly sanitize storage volumes between tenants, the blast radius extends beyond a single customer to potentially compromise the entire platform’s trust model. This incident report is valuable not because it details a novel exploit, but because it transparently documents the operational realities of debugging storage isolation failures in a high-scale production environment. It highlights the difficulty of verifying that block-level data is truly zeroed out after a container’s lifecycle ends, a problem that often slips past standard unit tests. For practitioners managing multi-tenant infrastructure, the key takeaway is to assume default storage isolation is insufficient and implement independent, cryptographic verification of data erasure on every volume reassignment.
External security researchers at Accomplish identified a vulnerability in Cloudflare Containers that could expose residual disk data from previous workloads. We explain how the issue worked, how we investigated it, and the steps we took to remediate it.
— Cloudflare Blog