Executive Summary

This report contains the security assessment results from Cloudsplaining, which maps out the IAM risk landscape in a report.

The assessment identifies where resource ARN constraints are not used and identifies other risks in IAM policies:

  • Privilege Escalation
  • Resource Exposure
  • Infrastructure Modification
  • Data Exfiltration

Remediating these issues, where necessary, will help to limit the blast radius in the case of compromised AWS credentials.

RiskInstancesSeverity
Privilege Escalation24High
Data Exfiltration7Medium
Resource Exposure30High
Credentials Exposure9High
Infrastructure Modification41Low
Report Generated: 2024-09-15 ⋄ Cloudsplaining version: 0.7.0