Property
Languageterraform
Severitymedium
Servicedatabase
ProviderAzure
Vulnerability Typemisconfiguration

Description#

The configuration disables one or more SQL Server security threat alerts, preventing the detection and reporting of suspicious activities like SQL injection, data exfiltration, or access anomalies. This reduces the visibility of potential attacks and compromises proactive security monitoring.

Impact#

With threat alerts disabled, malicious activities may go undetected, allowing attackers to exploit vulnerabilities, exfiltrate data, or escalate privileges without timely detection. This increases the risk of data breaches and financial or reputational damage to the organization.

Resolution#

Use all provided threat alerts