Authentication

Root User without MFA

Risk Level

Hazardous (3)

Platform(s)

Description

The root account is the highest privileged user in the cloud account. Multi-Factor Authentication (MFA) adds another mechanism of authentication on top of a username and password. It makes it harder for an attacker to gain access to protected resources. Therefore, MFA should be enabled for the root user. It was detected that the root user does not have MFA enabled.