Athena workgroup settings can be overridden by client Affecting Athena service in AWS


Severity

0.0
medium
0
10
Severity Framework
Snyk CCSS
Rule category
Monitoring/ Data

Is your environment affected by this misconfiguration?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
Frameworks
CIS-ControlsCSA-CCM
  • Snyk IDSNYK-CC-00326
  • creditSnyk Research Team

Description

Encryption of the results can be disabled by the client, and in an event of unauthorized access to the data they would be able to read the contents.

How to fix?

Set Properties.WorkGroupConfiguration.EnforceWorkGroupConfiguration attribute to true.

CloudFormation

    Terraform