Skip to main content

CCC.RDMS.TH05: Unauthorized Snapshot Sharing

Threat ID:CCC.RDMS.TH05
Title:Unauthorized Snapshot Sharing
Description:

Snapshots may be shared with untrusted accounts, which can lead to unauthorized access and potential data exfiltration. This significantly increases the risk of data exposure if sensitive information is contained in the snapshots.

Related Capabilities

IDTitleDescription
CCC.Core.CP11BackupThe service can generate copies of its data or configurations in the form of automated backups, snapshot-based backups, or incremental backups.

External Mappings

Reference IDEntry IDStrengthRemarks
MITRE-ATT&CK
T1530
0
-

Controls

IDTitleObjectiveControl FamilyThreat MappingsGuideline MappingsAssessment Requirements
CCC.RDMS.CN05Restrict Snapshot Sharing to Authorized AccountsEnsure database snapshots can only be shared with explicitly authorized accounts, thereby minimizing the risk of data exposure or exfiltration. Identity and Access Management
1
2
1