An analysis by Palo Alto Networks identified almost 200,000 IaC template files that contained insecure configuration options. Using those templates can lead to serious vulnerabilities that put cloud infrastructure and data it holds at risk. The absence of database encryption and logging, which is important to protect data, was also a commonly observed issue in CloudFormation templates. The report suggests that half the infrastructure deployments using AWS Cloudformation templates will have an insecure configuration. The issue is in line with the type of issues detected in real-world cloud infrastructure deployments and in past reports.”]

