Property
Languageterraform
Severitycritical
Serviceredshift
ProviderAWS

Description#

AWS Classic resources, such as Redshift Cluster Security Groups, operate in a shared network environment with other AWS customers instead of an isolated VPC. This configuration exposes resources to increased security risks due to lack of network isolation.

Impact#

Running resources in a shared environment can allow attackers from other AWS customers to potentially access or interfere with these resources, increasing the risk of data breaches, unauthorized access, and compliance violations.

Resolution#

Switch to VPC resources