Property
Languagehcl
Severitymedium
CWECWE-320: CWE CATEGORY: Key Management Errors
OWASPA03:2017 - Sensitive Data Exposure
Confidence LevelMedium
Impact LevelMedium
Likelihood LevelMedium

Description#

The AWS RDS resource is configured with ‘backup_retention_period = 0’, which means automated backups are disabled. Without backups, you cannot recover lost or corrupted database data.

Impact#

If data loss or corruption occurs, there will be no backups to restore from, leading to permanent loss of critical application or customer data. This can cause significant downtime, disrupt business operations, and result in compliance or reputational issues.