logo

Database

Aws Auto Backups Disabled

Description

Identifies AWS ElastiCache replication groups that have automatic backups disabled (snapshot retention set to 0). Without automated backups, there is a risk of permanent data loss in case of system failures or disasters, violating data protection and disaster recovery best practices.

Weakness:

101 - Lack of protection against deletion

Category: Functionality Abuse

Detection Strategy

    Examines each ElastiCache replication group in the AWS account

    Reports a vulnerability when a replication group's SnapshotRetentionLimit is set to 0

    The vulnerability includes the replication group's ARN and the snapshot retention limit value

Severity v4.0

1.8

Low

Method ID

CSPM-0ED1D

Technique

CSPM

Target

AWS

Technology

ELASTICACHE

CWE ID(s)

CWE-732