Aws Unencrypted Storage
Description
Detects AWS RDS database instances that are configured without storage encryption enabled. Unencrypted RDS storage puts sensitive database contents at risk of exposure if the underlying storage is compromised or improperly accessed.
Detection Strategy
• Scans all RDS database instances in the specified AWS region
• Reports a vulnerability if an RDS instance has StorageEncrypted set to false or missing
• Each vulnerable instance is reported with its unique DB Instance ARN and encryption status
Search for vulnerabilities in your apps for free with Fluid Attacks' automated security testing! Start your 21-day free trial and discover the benefits of the Continuous Hacking Essential plan. If you prefer the Advanced plan, which includes the expertise of Fluid Attacks' hacking team, fill out this contact form.