VM Image not encrypted with CMEK or CSEK
VM Operating System Image allows you to create boot disks for your instances. The default choice to encrypt an image...
VM Operating System Image allows you to create boot disks for your instances. The default choice to encrypt an image...
We have found that CloudFront Distribution {AwsCloudFront} ViewerProtocolPolicy is set to allow-all for: {AwsCloudFront.PublicCacheBehaviors}. Amazon CloudFront is a high-performance content...
Azure Cosmos DB is a fully managed NoSQL database for modern app development. The Cosmos DB - {AzureCosmosDb} is configured...
GCP Secret Manager can store, manage and access secrets, with the appropriate permissions you can view its content. We detected...
It was detected that the topic {GcpPubSubTopic} is not using CMK (Customer-Managed Key). Google Cloud Pub/Sub topics should be encrypted...
RDS database instance snapshot {AwsRdsDbInstanceSnapshot} does not have storage encryption enabled. Snapshots should be encrypted in order to protect the...
API Gateway {AwsApiGatewayEndpoint} is publicly accessible. API Gateways should only be accessible from known sources in order to prevent unauthorized...
We have found that the AWS ECR repository - {AwsEcrRepository} is publicly accessible. AWS ECR - Amazon Elastic Container Registry...
Orca has detected that your s3 bucket '{AwsS3Bucket}' can be publicly accessed for GET actions. An S3 bucket that grants...