cyberstrikeus
- 7.2k skills
- 0 followers
- 1 day ago last updated
- ▌ Cis GCP Foundations 5 2 · cyberstrikeusEnsure That Cloud Storage Buckets Have Uniform Bucket-Level Access Enabled
- ▌ Cis GCP Foundations 6 4 · cyberstrikeusEnsure That the Cloud SQL Database Instance Requires All Incoming Connections To Use SSL
- ▌ Cis GCP Foundations 6 5 · cyberstrikeusEnsure That Cloud SQL Database Instances Do Not Implicitly Whitelist All Public IP Addresses
- ▌ Cis GCP Foundations 6 6 · cyberstrikeusEnsure That Cloud SQL Database Instances Do Not Have Public IPs
- ▌ Cis GCP Foundations 6 7 · cyberstrikeusEnsure That Cloud SQL Database Instances Are Configured With Automated Backups
- ▌ Cis GCP Foundations 7 1 · cyberstrikeusEnsure That BigQuery Datasets Are Not Anonymously or Publicly Accessible
- ▌ Cis GCP Foundations 7 2 · cyberstrikeusEnsure That All BigQuery Tables Are Encrypted With Customer-Managed Encryption Key (CMEK)
- ▌ Cis GCP Foundations 7 3 · cyberstrikeusEnsure That a Default Customer-Managed Encryption Key (CMEK) Is Specified for All BigQuery Data Sets
- ▌
- ▌ Cis GCP Foundations 8 1 · cyberstrikeusEnsure That Dataproc Cluster Is Encrypted Using Customer-Managed Encryption Key
- ▌ Cis GCP Foundations 1 10 · cyberstrikeusEnsure KMS Encryption Keys Are Rotated Within a Period of 90 Days
- ▌ Cis GCP Foundations 1 11 · cyberstrikeusEnsure That Separation of Duties Is Enforced While Assigning KMS Related Roles to Users
- ▌
- ▌ Cis GCP Foundations 1 13 · cyberstrikeusEnsure API Keys Are Restricted To Use by Only Specified Hosts and Apps
- ▌ Cis GCP Foundations 1 14 · cyberstrikeusEnsure API Keys Are Restricted to Only APIs That Application Needs Access
- ▌
- ▌
- ▌ Cis GCP Foundations 1 17 · cyberstrikeusEnsure Secrets are Not Stored in Cloud Functions Environment Variables by Using Secret Manager
- ▌ Cis GCP Foundations 2 10 · cyberstrikeusEnsure That the Log Metric Filter and Alerts Exist for Cloud Storage IAM Permission Changes
- ▌ Cis GCP Foundations 2 11 · cyberstrikeusEnsure That the Log Metric Filter and Alerts Exist for SQL Instance Configuration Changes
- ▌ Cis GCP Foundations 2 12 · cyberstrikeusEnsure That Cloud DNS Logging Is Enabled for All VPC Networks
- ▌
- ▌
- ▌
- ▌
- ▌ Cis GCP Foundations 3 10 · cyberstrikeusUse Identity Aware Proxy (IAP) to Ensure Only Traffic From Google IP Addresses are Allowed
- ▌ Cis GCP Foundations 4 10 · cyberstrikeusEnsure That App Engine Applications Enforce HTTPS Connections
- ▌ Cis GCP Foundations 4 11 · cyberstrikeusEnsure That Compute Instances Have Confidential Computing Enabled
- ▌ Cis GCP Foundations 4 12 · cyberstrikeusEnsure the Latest Operating System Updates Are Installed On Your Virtual Machines in All Projects
- ▌ Cis GCP Foundations 6 1 1 · cyberstrikeusEnsure That a MySQL Instance Does Not Allow Anyone To Connect With Administrative Privileges
- ▌ Cis GCP Foundations 6 1 2 · cyberstrikeusEnsure 'Skip_show_database' Database Flag for Cloud SQL MySQL Instance Is Set to 'On'
- ▌ Cis GCP Foundations 6 1 3 · cyberstrikeusEnsure That the 'Local_infile' Database Flag for a Cloud SQL MySQL Instance Is Set to 'Off'
- ▌ Cis GCP Foundations 6 2 1 · cyberstrikeusEnsure 'Log_error_verbosity' Database Flag for Cloud SQL PostgreSQL Instance Is Set to 'DEFAULT' or Stricter
- ▌ Cis GCP Foundations 6 2 2 · cyberstrikeusEnsure 'Log_connections' Database Flag for Cloud SQL PostgreSQL Instance Is Set to 'On'
- ▌ Cis GCP Foundations 6 2 3 · cyberstrikeusEnsure 'Log_disconnections' Database Flag for Cloud SQL PostgreSQL Instance Is Set to 'On'
- ▌ Cis GCP Foundations 6 2 4 · cyberstrikeusEnsure 'Log_statement' Database Flag for Cloud SQL PostgreSQL Instance Is Set Appropriately
- ▌ Cis GCP Foundations 6 2 5 · cyberstrikeusEnsure That the 'Log_min_messages' Flag for a Cloud SQL PostgreSQL Instance Is Set at Minimum to 'Warning'
- ▌ Cis GCP Foundations 6 2 6 · cyberstrikeusEnsure 'Log_min_error_statement' Database Flag for Cloud SQL PostgreSQL Instance Is Set to 'Error' or Stricter
- ▌ Cis GCP Foundations 6 2 7 · cyberstrikeusEnsure 'Log_min_duration_statement' Database Flag for Cloud SQL PostgreSQL Instance Is Set to '-1' (Disabled)
- ▌ Cis GCP Foundations 6 2 8 · cyberstrikeusEnsure 'cloudsql.enable_pgaudit' Database Flag for each Cloud SQL PostgreSQL Instance Is Set to 'on' For Centralized Logging
- ▌ Cis GCP Foundations 6 3 1 · cyberstrikeusEnsure 'external scripts enabled' Database Flag for Cloud SQL SQL Server Instance Is Set to 'off'
- ▌ Cis GCP Foundations 6 3 2 · cyberstrikeusEnsure 'cross db ownership chaining' Database Flag for Cloud SQL SQL Server Instance Is Set to 'off'
- ▌ Cis GCP Foundations 6 3 3 · cyberstrikeusEnsure 'user Connections' Database Flag for Cloud SQL SQL Server Instance Is Set to a Non-limiting Value
- ▌ Cis GCP Foundations 6 3 4 · cyberstrikeusEnsure 'user options' Database Flag for Cloud SQL SQL Server Instance Is Not Configured
- ▌ Cis GCP Foundations 6 3 5 · cyberstrikeusEnsure 'remote access' Database Flag for Cloud SQL SQL Server Instance Is Set to 'off'
- ▌ Cis GCP Foundations 6 3 6 · cyberstrikeusEnsure '3625 (trace flag)' Database Flag for all Cloud SQL SQL Server Instances Is Set to 'on'
- ▌ Cis GCP Foundations 6 3 7 · cyberstrikeusEnsure 'contained database authentication' Database Flag for Cloud SQL SQL Server Instance Is Set to 'off'
- ▌ Cis Ubuntu1804 V220 5 2 3 16 · cyberstrikeusEnsure successful and unsuccessful attempts to use the setfacl command are recorded
- ▌ Cis Ubuntu1804 V220 5 2 3 17 · cyberstrikeusEnsure successful and unsuccessful attempts to use the chacl command are recorded
- ▌ Cis Ubuntu1804 V220 5 2 3 18 · cyberstrikeusEnsure successful and unsuccessful attempts to use the usermod command are recorded
- ▌ Cis Ubuntu1804 V220 5 2 3 19 · cyberstrikeusEnsure kernel module loading and unloading is collected
- ▌
- ▌ Cis Ubuntu1804 V220 5 2 3 21 · cyberstrikeusEnsure the running and on disk configuration is the same
- ▌
- ▌ Cis Ubuntu1804 V220 5 2 4 11 · cyberstrikeus5.2.4.11 Ensure cryptographic mechanisms are used to protect the integrity of audit tools
- ▌ Cis Ubuntu2004 V300 1 1 1 10 · cyberstrikeusEnsure unused filesystems kernel modules are not available
- ▌
- ▌
- ▌
- ▌
- ▌ Cis Ubuntu2004 V300 6 3 3 14 · cyberstrikeusEnsure events that modify the system's Mandatory Access Controls are collected
- ▌ Cis Ubuntu2004 V300 6 3 3 15 · cyberstrikeusEnsure successful and unsuccessful attempts to use the chcon command are collected
- ▌ Cis Ubuntu2004 V300 6 3 3 16 · cyberstrikeusEnsure successful and unsuccessful attempts to use the setfacl command are collected
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ Cis Ubuntu2004 V300 6 3 4 10 · cyberstrikeus6.3.4.10 Ensure audit tools group owner is configured (Automated)
- ▌ Cis Azure Foundations 6 1 1 10 · cyberstrikeusEnsure Intune logs are captured and sent to Log Analytics
- ▌ Cis Azure Foundations 6 1 2 10 · cyberstrikeusEnsure Activity Log Alert exists for Delete Public IP Address rule
- ▌ Cis Azure Foundations 6 1 2 11 · cyberstrikeusEnsure that an Activity Log Alert exists for Service Health
- ▌ Cis Azure Storage 2 1 1 1 · cyberstrikeusEnsure 'Allowed Protocols' for shared access signature (SAS) tokens is set to 'HTTPS Only'
- ▌ Cis Azure Storage 2 1 1 2 · cyberstrikeusEnsure that shared access signature (SAS) tokens expire within an hour
- ▌ Cis Azure Storage 2 1 1 3 · cyberstrikeusEnsure stored access policies (SAP) are used when generating shared access signature (SAS) tokens
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ Cis Ubuntu1604 V200 3 5 3 2 3 · cyberstrikeusEnsure iptables outbound and established connections are configured
- ▌ Cis Ubuntu1604 V200 3 5 3 2 4 · cyberstrikeusEnsure iptables firewall rules exist for all open ports
- ▌
- ▌
- ▌ Cis Ubuntu1604 V200 3 5 3 3 3 · cyberstrikeusEnsure ip6tables outbound and established connections are configured
- ▌ Cis Ubuntu1604 V200 3 5 3 3 4 · cyberstrikeusEnsure ip6tables firewall rules exist for all open ports
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ Cis Ubuntu1804 V220 3 4 3 2 3 · cyberstrikeusEnsure iptables outbound and established connections are configured
- ▌ Cis Ubuntu1804 V220 3 4 3 2 4 · cyberstrikeusEnsure iptables firewall rules exist for all open ports
- ▌
- ▌
- ▌ Cis Ubuntu1804 V220 3 4 3 3 3 · cyberstrikeusEnsure ip6tables outbound and established connections are configured
- ▌ Cis Ubuntu1804 V220 3 4 3 3 4 · cyberstrikeusEnsure ip6tables firewall rules exist for all open ports