logo

Database

Aws Publicly Shared Amis

Description

Detects Amazon Machine Images (AMIs) owned by your account that are configured for public sharing. Publicly shared AMIs can expose sensitive system configurations, proprietary data, or embedded secrets to anyone on the internet, potentially compromising security.

Weakness:

333 - Insecure service configuration - EC2

Category: Functionality Abuse

Detection Strategy

    Scans all AMIs owned by your AWS account in the specified region

    Reports a vulnerability if any AMI has the 'Public' attribute set to true

    Each vulnerability includes the specific AMI ID and region where the public sharing was detected