Data protection

KMS key with public access policy

Risk Level

Hazardous (3)

Platform(s)
Compliance Frameworks

Description

AWS Key Management Service (AWS KMS) is a managed service that allows you to create and control the cryptographic keys that are used to protect your data. It was found that {AwsKmsKey}'s key policy allows public access, which can lead to abuse by a malicious party.