Property
Languagehcl
Severitylow
CWECWE-311: Missing Encryption of Sensitive Data
OWASPA03:2017 - Sensitive Data Exposure
Confidence LevelLow
Impact LevelMedium
Likelihood LevelLow

Description#

The Athena workgroup is configured to allow client-side overrides, meaning users can disable required encryption settings. This undermines enforced security controls and exposes sensitive query results to potential risks.

Impact#

If exploited, clients could run queries without encryption, leading to unprotected storage or transmission of sensitive data. This increases the risk of data breaches, regulatory non-compliance, and unauthorized access to confidential information.