AWSXenos Report


Account Type Finding
aws_services
ARN Principal Account Owner External ID
arn:aws:iam::123456789012:role/service-role/AWSCloud9SSMAccessRole [cloud9.amazonaws.com, ec2.amazonaws.com] -
arn:aws:iam::123456789012:role/service-role/AWSDeepRacerAccessRole [deepracer.amazonaws.com] -
org_accounts
ARN Principal Account Owner External ID
arn:aws:iam::123456789012:role/AWS-QuickSetup-StackSet-Local-ExecutionRole [arn:aws:iam::00000000003:role/AWS-QuickSetup-StackSet-Local-AdministrationRole] Example Org Account - CREATED ACTIVE
arn:aws:iam::123456789012:role/AWSCloudFormationStackSetExecutionRole [arn:aws:iam::00000000002:root] Example Org Billing Account - INVITED ACTIVE
unknown_accounts
ARN Principal Account Owner External ID
arn:aws:iam::123456789012:role/Notintheregister ['arn:aws:iam:666666666777:root'] - True
arn:aws:iam::123456789012:role/TotallyLegitRole ['arn:aws:iam:666666666666:root'] - False
known_accounts
ARN Principal Account Owner External ID
arn:aws:iam::123456789012:role/Crowdstrike [arn:aws:iam::292230061137:root] Crowdstrike Falcon - https://www.crowdstrike.com/falcon/2020/wp-content/uploads/2020/10/Crowdstrike-AWS-ControlTower-Implementation-Guide.pdf True