Severity : Info
Description:
...
This controls ensures that security group in every VPC are attached to resources. Unused security group with rules to allow traffic may be misused by attaching to resources to access illegally. Also unused security groups are still counted towards the limit on number of groups allowed for VPC. It is recommended that unused security group should be deleted.
Remediation Steps:
Perform following to modify the default security group for VPC:
Login to the AWS Management Console at https://console.aws.amazon.com.
Navigate to VPC services.
In navigation, Select Security Groups under Security.
Check the checkbox in front of group reported.
In Actions, Select Delete Security Groups.
Select Delete to remove group from the VPC.
Important:
Reference: