github.com/aquasecurity/trivy-iac@v0.8.1-0.20240127024015-3d8e412cf0ab/avd_docs/aws/ec2/AVD-AWS-0173/docs.md (about) 1 2 3 Configuring all VPC default security groups to restrict all traffic will encourage least 4 privilege security group development and mindful placement of AWS resources into 5 security groups which will in-turn reduce the exposure of those resources. 6 7 8 ### Impact 9 Easier to accidentally expose resources - goes against principle of least privilege 10 11 <!-- DO NOT CHANGE --> 12 {{ remediationActions }} 13 14 ### Links 15 - https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/default-custom-security-groups.html 16 17