Aws Notebook Encryption Disabled
Description
Identifies AWS SageMaker notebook instances that are not configured with KMS encryption. Unencrypted SageMaker notebooks may expose sensitive data and code stored within the notebooks, as the data is not encrypted at rest.
Detection Strategy
• Scans all SageMaker notebook instances in the specified AWS region
• Checks if each notebook instance has a KMS key configured for encryption
• Reports a vulnerability if the 'KmsKeyId' property is missing or null for any notebook instance
Search for vulnerabilities in your apps for free with Fluid Attacks' automated security testing! Start your 21-day free trial and discover the benefits of the Continuous Hacking Essential plan. If you prefer the Advanced plan, which includes the expertise of Fluid Attacks' hacking team, fill out this contact form.