AWS New Checks

Ensure ECS Task Sets Do Not Automatically Assign Public IP Addresses
Profile Applicability: Level 1 Description: In Amazon ECS, task sets are used to manage ECS tasks in a Service deployment. By default, ECS tasks may ...
Mon, 24 Mar, 2025 at 4:45 AM
Check if S3 Glacier vaults have policies which allow access to everyone.
Profile Applicability: Level 1 Description: Amazon S3 Glacier is a storage class designed for data archiving and long-term backup. S3 Glacier Vaults ar...
Mon, 24 Mar, 2025 at 4:59 AM
Ensure the S3 bucket CloudTrail bucket requires MFA delete.
Profile Applicability: Level 1 Description: Amazon S3 is a scalable object storage service that is often used to store CloudTrail logs for auditing and...
Mon, 24 Mar, 2025 at 5:54 AM
Ensure there are no potential enumeration threats in CloudTrail.
Profile Applicability: Level 1 Description: AWS CloudTrail is a service that records API calls made on your AWS account, capturing detailed information...
Mon, 24 Mar, 2025 at 6:11 AM
Ensure CloudTrail Insight is enabled.
Profile Applicability: Level 1 Description: AWS CloudTrail Insights is a feature that automatically detects unusual API activity in your AWS environmen...
Mon, 24 Mar, 2025 at 6:29 AM
Ensure CloudTrail logging management events in All Regions.
Profile Applicability: Level 1 Description: AWS CloudTrail is a service that records API calls made on your AWS account, enabling you to monitor and re...
Mon, 24 Mar, 2025 at 6:49 AM
Ensure there are no potential LLM Jacking threats in CloudTrail.
Profile Applicability: Level 1 Description: LLM Jacking (Large Language Model Jacking) refers to the unauthorized or malicious manipulation of AI-drive...
Mon, 24 Mar, 2025 at 7:00 AM
Enable Privacy Protection for for a Route53 Domain.
Profile Applicability: Level 1 Description: Amazon Route 53 is a scalable Domain Name System (DNS) web service designed to route end users to infrastru...
Mon, 24 Mar, 2025 at 7:16 AM
Enable Transfer Lock for a Route53 Domain.
Profile Applicability: Level 1 Description: Amazon Route 53 is a scalable Domain Name System (DNS) web service that manages your domain registration, D...
Mon, 24 Mar, 2025 at 7:27 AM
Check if Route53 Records contains dangling IPs.
Profile Applicability: Level 1 Description: Amazon Route 53 is a scalable Domain Name System (DNS) web service that routes end users to infrastructure ...
Mon, 24 Mar, 2025 at 7:39 AM