Severity: High
Description: This control ensures that bucket access control list allows read or write access to AWS Authenticated Users and does not allow unrestricted public to read or write access. Allowing unrestricted access increases opportunities for loss of data.
Remediation Steps:
Perform following to update S3 bucket access control list:
Login to the AWS Management Console at https://console.aws.amazon.com.
Navigate to s3 console.
In the navigation pane, select buckets.
Click on the bucket to be modified, click Permissions.
In the permissions pane, navigate to Public Access section.
The section shows a list of permissions assigned to everyone.
Uncheck all the permissions granted to everyone.
Important:
Reference: