Software Updates

Database Security Knowledgebase Update 6.30 | Trustwave

Written by | May 2, 2023 4:38:00 PM

New Checks - DynamoDB

  • List global tables
    Description
    : Reports all DynamoDB global tables and their metadata
            Risk
    : Informational

  • Admin User verification
    Description
    : Reports user with full DynamoDB access is whether an AWS admin or not
            Risk
    : Low

  • verify VPC endpoint
    Description
    : Verify VPC Endpoint for DynamoDB exists.
            Risk
    : Medium

  • Verify Https Network ACL
    Description
    : Verify if inbound Https Network ACLs exist in current AWS region.
            Risk
    : Medium

  • Data at rest encryption Is not enabled
    Description
    : Verify KMS key used to encrypt data at rest is enabled.
            Risk
    : Medium

  • Global Table Version
    Description
    : Reports the version of global DynamoDB tables
            Risk
    : Informational

  • Credential Verification
    Description
    :
            Risk
    : Informational

Availability

  • Available to all AppDetectivePRO and DbProtect customers with maintenance (subscription or perpetual) in good standing at no additional cost.
  • Download SHATTER Knowledgebase from the Trustwave Support Portal. (https://www.trustwave.com/company/support/ and select AppDetectivePRO or DbProtect)
  • AppDetectivePRO customers can use the Updater within the product as well