← all publishers

cyberstrikeus

@cyberstrikeus source repo

7171 published skills · page 19 of 72

  1. Cis Cassandra40 V130 3 3 · cyberstrikeus
    Ensure there are no unnecessary roles or excessive privileges
    0 installs
  2. Cis Cassandra40 V130 3 4 · cyberstrikeus
    Ensure that Cassandra is run using a non-privileged, dedicated service account
    0 installs
  3. Cis Cassandra40 V130 3 5 · cyberstrikeus
    Ensure that Cassandra only listens for network connections on authorized interfaces
    0 installs
  4. Cis Cassandra40 V130 3 6 · cyberstrikeus
    Ensure that Data Center Authorizations is activated
    0 installs
  5. Cis Cassandra40 V130 3 7 · cyberstrikeus
    Review User-Defined Roles
    0 installs
  6. Cis Cassandra40 V130 3 8 · cyberstrikeus
    Review Superuser/Admin Roles
    0 installs
  7. Cis Cassandra40 V130 4 1 · cyberstrikeus
    Ensure that logging is enabled
    0 installs
  8. Cis Cassandra40 V130 4 2 · cyberstrikeus
    Ensure that auditing is enabled
    0 installs
  9. Cis Cassandra40 V130 5 1 · cyberstrikeus
    Inter-node Encryption
    0 installs
  10. Cis Cassandra40 V130 5 2 · cyberstrikeus
    Client Encryption
    0 installs
  11. Cis GCP Foundations 1 1 · cyberstrikeus
    Ensure That Corporate Login Credentials Are Used
    0 installs
  12. Cis GCP Foundations 1 2 · cyberstrikeus
    Ensure That Multi-Factor Authentication is Enabled for All Non-Service Accounts
    0 installs
  13. Cis GCP Foundations 1 3 · cyberstrikeus
    Ensure That Security Key Enforcement is Enabled for All Admin Accounts
    0 installs
  14. Cis GCP Foundations 1 4 · cyberstrikeus
    Ensure That There Are Only GCP-Managed Service Account Keys for Each Service Account
    0 installs
  15. Cis GCP Foundations 1 5 · cyberstrikeus
    Ensure That Service Account Has No Admin Privileges
    0 installs
  16. Cis GCP Foundations 1 6 · cyberstrikeus
    Ensure That IAM Users Are Not Assigned the Service Account User or Service Account Token Creator Roles at Project Level
    0 installs
  17. Cis GCP Foundations 1 7 · cyberstrikeus
    Ensure User-Managed/External Keys for Service Accounts Are Rotated Every 90 Days or Fewer
    0 installs
  18. Cis GCP Foundations 1 8 · cyberstrikeus
    Ensure That Separation of Duties Is Enforced While Assigning Service Account Related Roles to Users
    0 installs
  19. Cis GCP Foundations 1 9 · cyberstrikeus
    Ensure That Cloud KMS Cryptokeys Are Not Anonymously or Publicly Accessible
    0 installs
  20. Cis GCP Foundations 2 1 · cyberstrikeus
    Ensure That Cloud Audit Logging Is Configured Properly
    0 installs
  21. Cis GCP Foundations 2 2 · cyberstrikeus
    Ensure That Sinks Are Configured for All Log Entries
    0 installs
  22. Cis GCP Foundations 2 3 · cyberstrikeus
    Ensure That Retention Policies on Cloud Storage Buckets Used for Exporting Logs Are Configured Using Bucket Lock
    0 installs
  23. Cis GCP Foundations 2 4 · cyberstrikeus
    Ensure Log Metric Filter and Alerts Exist for Project Ownership Assignments/Changes
    0 installs
  24. Cis GCP Foundations 2 5 · cyberstrikeus
    Ensure That the Log Metric Filter and Alerts Exist for Audit Configuration Changes
    0 installs
  25. Cis GCP Foundations 2 6 · cyberstrikeus
    Ensure That the Log Metric Filter and Alerts Exist for Custom Role Changes
    0 installs
  26. Cis GCP Foundations 2 7 · cyberstrikeus
    Ensure That the Log Metric Filter and Alerts Exist for VPC Network Firewall Rule Changes
    0 installs
  27. Cis GCP Foundations 2 8 · cyberstrikeus
    Ensure That the Log Metric Filter and Alerts Exist for VPC Network Route Changes
    0 installs
  28. Cis GCP Foundations 2 9 · cyberstrikeus
    Ensure That the Log Metric Filter and Alerts Exist for VPC Network Changes
    0 installs
  29. Cis GCP Foundations 3 1 · cyberstrikeus
    Ensure That the Default Network Does Not Exist in a Project
    0 installs
  30. Cis GCP Foundations 3 2 · cyberstrikeus
    Ensure Legacy Networks Do Not Exist for Older Projects
    0 installs
  31. Cis GCP Foundations 3 3 · cyberstrikeus
    Ensure That DNSSEC Is Enabled for Cloud DNS
    0 installs
  32. Cis GCP Foundations 3 4 · cyberstrikeus
    Ensure That RSASHA1 Is Not Used for the Key-Signing Key in Cloud DNS DNSSEC
    0 installs
  33. Cis GCP Foundations 3 5 · cyberstrikeus
    Ensure That RSASHA1 Is Not Used for the Zone-Signing Key in Cloud DNS DNSSEC
    0 installs
  34. Cis GCP Foundations 3 6 · cyberstrikeus
    Ensure That SSH Access Is Restricted From the Internet
    0 installs
  35. Cis GCP Foundations 3 7 · cyberstrikeus
    Ensure That RDP Access Is Restricted From the Internet
    0 installs
  36. Cis GCP Foundations 3 8 · cyberstrikeus
    Ensure That VPC Flow Logs Is Enabled for Every Subnet in a VPC Network
    0 installs
  37. Cis GCP Foundations 3 9 · cyberstrikeus
    Ensure No HTTPS or SSL Proxy Load Balancers Permit SSL Policies With Weak Cipher Suites
    0 installs
  38. Cis GCP Foundations 4 1 · cyberstrikeus
    Ensure That Instances Are Not Configured To Use the Default Service Account
    0 installs
  39. Cis GCP Foundations 4 2 · cyberstrikeus
    Ensure That Instances Are Not Configured To Use the Default Service Account With Full Access to All Cloud APIs
    0 installs
  40. Cis GCP Foundations 4 3 · cyberstrikeus
    Ensure 'Block Project-Wide SSH Keys' Is Enabled for VM Instances
    0 installs
  41. Cis GCP Foundations 4 4 · cyberstrikeus
    Ensure Oslogin Is Enabled for a Project
    0 installs
  42. Cis GCP Foundations 4 5 · cyberstrikeus
    Ensure 'Enable Connecting to Serial Ports' Is Not Enabled for VM Instance
    0 installs
  43. Cis GCP Foundations 4 6 · cyberstrikeus
    Ensure That IP Forwarding Is Not Enabled on Instances
    0 installs
  44. Cis GCP Foundations 4 7 · cyberstrikeus
    Ensure VM Disks for Critical VMs Are Encrypted With Customer-Supplied Encryption Keys (CSEK)
    0 installs
  45. Cis GCP Foundations 4 8 · cyberstrikeus
    Ensure Compute Instances Are Launched With Shielded VM Enabled
    0 installs
  46. Cis GCP Foundations 4 9 · cyberstrikeus
    Ensure That Compute Instances Do Not Have Public IP Addresses
    0 installs
  47. Cis GCP Foundations 5 1 · cyberstrikeus
    Ensure That Cloud Storage Bucket Is Not Anonymously or Publicly Accessible
    0 installs
  48. Cis Ubuntu 14 04 Lts 5 2 7 Ensure Ssh Hostbasedauthenticatio · cyberstrikeus
    Verify SSH HostbasedAuthentication is disabled to prevent host-based trust authentication
    0 installs
  49. Cis Ubuntu 14 04 Lts 5 2 8 Ensure Ssh Root Login Is Disabled · cyberstrikeus
    Verify SSH PermitRootLogin is set to no to prevent direct root login over SSH
    0 installs
  50. Cis Ubuntu 14 04 Lts 5 2 9 Ensure Ssh Permitemptypasswords I · cyberstrikeus
    Verify SSH PermitEmptyPasswords is set to no to prevent login with empty passwords
    0 installs
  51. Cis Ubuntu 14 04 Lts 5 3 1 Ensure Password Creation Requirem · cyberstrikeus
    Verify PAM password quality requirements enforce minimum length and complexity
    0 installs
  52. Cis Ubuntu 14 04 Lts 5 3 2 Ensure Lockout For Failed Passwor · cyberstrikeus
    Verify PAM is configured to lock out users after repeated failed password attempts
    0 installs
  53. Cis Ubuntu 14 04 Lts 5 3 3 Ensure Password Reuse Is Limited · cyberstrikeus
    Verify PAM is configured to remember at least 5 previous passwords to prevent reuse
    0 installs
  54. Cis Ubuntu 14 04 Lts 5 3 4 Ensure Password Hashing Algorithm · cyberstrikeus
    Verify PAM is configured to use SHA-512 hashing algorithm for password storage
    0 installs
  55. Cis Ubuntu 14 04 Lts 5 4 2 Ensure System Accounts Are Non Lo · cyberstrikeus
    Verify system accounts have non-login shells and are locked to prevent interactive access
    0 installs
  56. Cis Ubuntu 14 04 Lts 5 4 3 Ensure Default Group For The Root · cyberstrikeus
    Verify the root account default group is GID 0 to prevent root-owned files becoming accessible
    0 installs
  57. Cis Ubuntu 14 04 Lts 5 4 4 Ensure Default User Umask Is 027 · cyberstrikeus
    Verify default umask is set to 027 or more restrictive in shell configuration files
    0 installs
  58. Cis Ubuntu 14 04 Lts 5 4 5 Ensure Default User Shell Timeout · cyberstrikeus
    Verify TMOUT is set to 900 seconds or less in shell configuration files for idle session timeout
    0 installs
  59. Cis Ubuntu 14 04 Lts 6 1 1 Audit System File Permissions · cyberstrikeus
    Audit system file permissions using dpkg --verify to detect unauthorized changes
    0 installs
  60. Cis Ubuntu 14 04 Lts 6 1 2 Ensure Permissions On Etc Passwd · cyberstrikeus
    Verify /etc/passwd has correct ownership (root:root) and permissions (644)
    0 installs
  61. Cis Ubuntu 14 04 Lts 6 1 3 Ensure Permissions On Etc Shadow · cyberstrikeus
    Verify /etc/shadow has correct ownership (root:shadow) and permissions (640 or more restrictive)
    0 installs
  62. Cis Ubuntu 14 04 Lts 6 1 4 Ensure Permissions On Etc Group A · cyberstrikeus
    Verify /etc/group has correct ownership (root:root) and permissions (644)
    0 installs
  63. Cis Ubuntu 14 04 Lts 6 1 5 Ensure Permissions On Etc Gshadow · cyberstrikeus
    Verify /etc/gshadow has correct ownership (root:shadow) and permissions (640 or more restrictive)
    0 installs
  64. Cis Ubuntu 14 04 Lts 6 1 6 Ensure Permissions On Etc Passwd · cyberstrikeus
    Verify /etc/passwd- has correct ownership (root:root) and permissions (644 or more restrictive)
    0 installs
  65. Cis Ubuntu 14 04 Lts 6 1 7 Ensure Permissions On Etc Shadow · cyberstrikeus
    Verify /etc/shadow- has correct ownership and permissions (640 or more restrictive)
    0 installs
  66. Cis Ubuntu 14 04 Lts 6 1 8 Ensure Permissions On Etc Group A · cyberstrikeus
    Verify /etc/group- has correct ownership (root:root) and permissions (644 or more restrictive)
    0 installs
  67. Cis Ubuntu 14 04 Lts 6 1 9 Ensure Permissions On Etc Gshadow · cyberstrikeus
    Verify /etc/gshadow- has correct ownership and permissions (640 or more restrictive)
    0 installs
  68. Cis Ubuntu 14 04 Lts 6 2 1 Ensure Password Fields Are Not Em · cyberstrikeus
    Verify all accounts in /etc/shadow have a password or are locked
    0 installs
  69. Cis Ubuntu 14 04 Lts 6 2 2 Ensure No Legacy Entries Exist In · cyberstrikeus
    Verify no legacy NIS '+' entries exist in /etc/passwd
    0 installs
  70. Cis Ubuntu 14 04 Lts 6 2 3 Ensure No Legacy Entries Exist In · cyberstrikeus
    Verify no legacy NIS '+' entries exist in /etc/shadow
    0 installs
  71. Cis Ubuntu 14 04 Lts 6 2 4 Ensure No Legacy Entries Exist In · cyberstrikeus
    Verify no legacy NIS '+' entries exist in /etc/group
    0 installs
  72. Cis Ubuntu 14 04 Lts 6 2 5 Ensure Root Is The Only Uid 0 Acc · cyberstrikeus
    Verify that only the root account has UID 0
    0 installs
  73. Cis Ubuntu 14 04 Lts 6 2 6 Ensure Root Path Integrity · cyberstrikeus
    Verify root PATH does not contain writable or non-root-owned directories
    0 installs
  74. Cis Ubuntu 14 04 Lts 6 2 7 Ensure All Users Home Directories · cyberstrikeus
    Verify that all users defined in /etc/passwd have existing home directories
    0 installs
  75. Cis Ubuntu 14 04 Lts 6 2 8 Ensure Users Home Directories Per · cyberstrikeus
    Verify user home directories have permissions of 750 or more restrictive
    0 installs
  76. Cis Ubuntu 14 04 Lts 6 2 9 Ensure Users Own Their Home Direc · cyberstrikeus
    Verify that users own their assigned home directories
    0 installs
  77. Cis Ubuntu1604 V200 1 1 2 · cyberstrikeus
    Ensure /tmp is configured
    0 installs
  78. Cis Ubuntu1604 V200 1 1 3 · cyberstrikeus
    Ensure nodev option set on /tmp partition
    0 installs
  79. Cis Ubuntu1604 V200 1 1 4 · cyberstrikeus
    Ensure nosuid option set on /tmp partition
    0 installs
  80. Cis Ubuntu1604 V200 1 1 5 · cyberstrikeus
    Ensure noexec option set on /tmp partition
    0 installs
  81. Cis Ubuntu1604 V200 1 1 6 · cyberstrikeus
    Ensure /dev/shm is configured
    0 installs
  82. Cis Ubuntu1604 V200 1 1 7 · cyberstrikeus
    Ensure nodev option set on /dev/shm partition
    0 installs
  83. Cis Ubuntu1604 V200 1 1 8 · cyberstrikeus
    Ensure nosuid option set on /dev/shm partition
    0 installs
  84. Cis Ubuntu1604 V200 1 1 9 · cyberstrikeus
    Ensure noexec option set on /dev/shm partition
    0 installs
  85. Cis Ubuntu1604 V200 1 2 1 · cyberstrikeus
    Ensure package manager repositories are configured
    0 installs
  86. Cis Ubuntu1604 V200 1 2 2 · cyberstrikeus
    Ensure GPG keys are configured
    0 installs
  87. Cis Ubuntu1604 V200 1 3 1 · cyberstrikeus
    Ensure AIDE is installed
    0 installs
  88. Cis Ubuntu1604 V200 1 3 2 · cyberstrikeus
    Ensure filesystem integrity is regularly checked
    0 installs
  89. Cis Ubuntu1604 V200 1 4 1 · cyberstrikeus
    Ensure permissions on bootloader config are not overridden
    0 installs
  90. Cis Ubuntu1604 V200 1 4 2 · cyberstrikeus
    Ensure bootloader password is set
    0 installs
  91. Cis Ubuntu1604 V200 1 4 3 · cyberstrikeus
    Ensure permissions on bootloader config are configured
    0 installs
  92. Cis Ubuntu1604 V200 1 4 4 · cyberstrikeus
    Ensure authentication required for single user mode
    0 installs
  93. Cis Ubuntu1604 V200 1 5 1 · cyberstrikeus
    Ensure XD/NX support is enabled
    0 installs
  94. Cis Ubuntu1604 V200 1 5 2 · cyberstrikeus
    Ensure address space layout randomization (ASLR) is enabled
    0 installs
  95. Cis Ubuntu1604 V200 1 5 3 · cyberstrikeus
    Ensure prelink is disabled
    0 installs
  96. Cis Ubuntu1604 V200 1 5 4 · cyberstrikeus
    Ensure core dumps are restricted
    0 installs
  97. Cis Ubuntu1604 V200 1 7 1 · cyberstrikeus
    Ensure message of the day is configured properly
    0 installs
  98. Cis Ubuntu1604 V200 1 7 2 · cyberstrikeus
    Ensure local login warning banner is configured properly
    0 installs
  99. Cis Ubuntu1604 V200 1 7 3 · cyberstrikeus
    Ensure remote login warning banner is configured properly
    0 installs
  100. Cis Ubuntu1604 V200 1 7 4 · cyberstrikeus
    Ensure permissions on /etc/motd are configured
    0 installs