VPC subnets with disabled flow logs lack critical network traffic visibility, which can lead to undetected unauthorized access, data exfiltration, and network misconfigurations. This lack of visibility increases the risk of undetected security incidents.
Networking / VPC / Threats / DEV
Lack of Network Visibility due to Disabled VPC Flow Logs
CCC.VPC.TH04
Related Capabilities
| ID | Title | Description |
|---|---|---|
| CCC.VPC.CP16 | Flow Logs | Ability to capture information about the IP traffic going through the VPC. |
Related Controls
| ID | Title | Description |
|---|---|---|
| CCC.VPC.CN04 | Enforce VPC Flow Logs on VPCs | Ensure VPCs are configured with flow logs enabled to capture traffic information. |
External Mappings
| Framework | ID | Remarks |
|---|---|---|
| MITRE-ATT&CK | T1562 |