LOW
Source
Trivy
Frameworks

CIS AWS 1.2

CIS AWS 1.4

ID
AVD-AWS-0140

The “root” account has unrestricted access to all resources in the AWS account. It is highly

recommended that the use of this account be avoided.

The root user has unrestricted access to all services and resources in an AWS account. We highly recommend that you avoid using the root user for daily tasks. Minimizing the use of the root user and adopting the principle of least privilege for access management reduce the risk of accidental changes and unintended disclosure of highly privileged credentials.

Impact

Compromise of the root account compromises the entire AWS account and all resources within it.