AWS New Checks

Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to SSH port 22.
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound access (0.0.0.0/0 for IPv...
Tue, 14 Oct, 2025 at 2:40 AM
Ensure secrets are found in EC2 User Data.
Profile Applicability: Level 1 Description: This control ensures that no sensitive information such as passwords, API keys, access tokens, or private...
Tue, 14 Oct, 2025 at 2:50 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to port 3389.
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound traffic (0.0.0.0/0 for IP...
Tue, 14 Oct, 2025 at 2:58 AM
Ensure the default security group for every VPC restricts all traffic.
Profile Applicability: Level 1 Description: This control ensures that the default security group in every Amazon Virtual Private Cloud (VPC) is confi...
Tue, 14 Oct, 2025 at 3:08 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to Oracle ports 1521 or 2483.
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound access (0.0.0.0/0 for IPv...
Tue, 14 Oct, 2025 at 3:15 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to Memcached port 11211.
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound access (0.0.0.0/0 for IPv...
Tue, 14 Oct, 2025 at 3:23 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to Cassandra ports 7199 or 9160 or 8888
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound access (0.0.0.0/0 for IPv4 or...
Tue, 14 Oct, 2025 at 3:57 AM
Ensure Lambda functions invoke API operations are being recorded by CloudTrail.
Profile Applicability: Level 1 Description: This control ensures that all AWS Lambda function invocation API operations are recorded and monitored th...
Tue, 14 Oct, 2025 at 3:50 AM
Ensure secrets are found in Lambda functions variables.
Profile Applicability: Level 1 Description: This control ensures that no sensitive data such as passwords, API keys, access tokens, or private keys i...
Tue, 14 Oct, 2025 at 3:44 AM
Ensure obsolete Lambda runtimes are found.
Profile Applicability: Level 1 Description: This control ensures that AWS Lambda functions using obsolete or deprecated runtimes are identified and remed...
Tue, 14 Oct, 2025 at 3:46 AM