cyberstrikeus
- 7.2k skills
- 0 followers
- 2 days ago last updated
- ▌ Cis Ubuntu 14 04 Lts 3 2 3 Ensure Secure Icmp Redirects Are · cyberstrikeusVerify that secure ICMP redirects are not accepted to prevent routing table manipulation from known gateways
- ▌ Cis Ubuntu 14 04 Lts 3 2 4 Ensure Suspicious Packets Are Log · cyberstrikeusVerify that packets with un-routable source addresses are logged for investigation
- ▌ Cis Ubuntu 14 04 Lts 3 2 5 Ensure Broadcast Icmp Requests Ar · cyberstrikeusVerify that broadcast ICMP echo and timestamp requests are ignored to prevent Smurf attacks
- ▌ Cis Ubuntu 14 04 Lts 3 2 6 Ensure Bogus Icmp Responses Are I · cyberstrikeusVerify that bogus ICMP error responses are ignored to prevent log file pollution
- ▌ Cis Ubuntu 14 04 Lts 3 2 7 Ensure Reverse Path Filtering Is · cyberstrikeusVerify that reverse path filtering is enabled to prevent IP spoofing
- ▌ Cis Ubuntu 14 04 Lts 3 2 8 Ensure Tcp Syn Cookies Is Enabled · cyberstrikeusVerify that TCP SYN Cookies are enabled to protect against SYN flood attacks
- ▌ Cis Ubuntu 14 04 Lts 3 3 1 Ensure Ipv6 Router Advertisements · cyberstrikeusVerify that IPv6 router advertisements are not accepted to prevent routing to compromised machines
- ▌ Cis Ubuntu 14 04 Lts 3 3 2 Ensure Ipv6 Redirects Are Not Acc · cyberstrikeusVerify that IPv6 ICMP redirects are not accepted to prevent routing to compromised machines
- ▌ Cis Ubuntu 14 04 Lts 3 3 3 Ensure Ipv6 Is Disabled · cyberstrikeusVerify that IPv6 is disabled if not required to reduce the attack surface
- ▌ Cis Ubuntu 14 04 Lts 3 4 1 Ensure Tcp Wrappers Is Installed · cyberstrikeusVerify that TCP Wrappers is installed for host-based access control
- ▌ Cis Ubuntu 14 04 Lts 3 4 2 Ensure Etc Hosts Allow Is Configu · cyberstrikeusVerify that /etc/hosts.allow is configured to permit authorized network access
- ▌ Cis Ubuntu 14 04 Lts 3 4 3 Ensure Etc Hosts Deny Is Configur · cyberstrikeusVerify that /etc/hosts.deny is configured to deny all unauthorized network access
- ▌ Cis Ubuntu 14 04 Lts 3 4 4 Ensure Permissions On Etc Hosts A · cyberstrikeusVerify that /etc/hosts.allow has correct ownership and permissions (root:root 644)
- ▌ Cis Ubuntu 14 04 Lts 3 4 5 Ensure Permissions On Etc Hosts D · cyberstrikeusVerify that /etc/hosts.deny has correct ownership and permissions (root:root 644)
- ▌ Cis Ubuntu 14 04 Lts 3 5 1 Ensure Dccp Is Disabled · cyberstrikeusVerify that the DCCP protocol kernel module is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 3 5 2 Ensure Sctp Is Disabled · cyberstrikeusVerify that the SCTP protocol kernel module is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 3 5 3 Ensure Rds Is Disabled · cyberstrikeusVerify that the RDS protocol kernel module is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 3 5 4 Ensure Tipc Is Disabled · cyberstrikeusVerify that the TIPC protocol kernel module is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 3 6 1 Ensure Iptables Is Installed · cyberstrikeusVerify that iptables is installed for firewall management and configuration
- ▌ Cis Ubuntu 14 04 Lts 3 6 2 Ensure Default Deny Firewall Poli · cyberstrikeusVerify that default deny firewall policy is configured for INPUT, OUTPUT, and FORWARD chains
- ▌ Cis Ubuntu 14 04 Lts 3 6 3 Ensure Loopback Traffic Is Config · cyberstrikeusVerify that loopback interface accepts traffic and other interfaces deny loopback network traffic
- ▌ Cis Ubuntu 14 04 Lts 3 6 4 Ensure Outbound And Established C · cyberstrikeusVerify that firewall rules for outbound and established connections are configured
- ▌ Cis Ubuntu 14 04 Lts 3 6 5 Ensure Firewall Rules Exist For A · cyberstrikeusVerify that firewall rules exist for all open ports on non-loopback addresses
- ▌ Cis Ubuntu 14 04 Lts 4 1 2 Ensure Auditd Service Is Enabled · cyberstrikeusEnable the auditd daemon to record system events for security monitoring
- ▌ Cis Ubuntu 14 04 Lts 4 1 3 Ensure Auditing For Processes Tha · cyberstrikeusConfigure grub to enable auditing for processes that start before auditd
- ▌ Cis Ubuntu 14 04 Lts 4 1 4 Ensure Events That Modify Date An · cyberstrikeusCollect audit events for system date and time modifications to detect tampering
- ▌ Cis Ubuntu 14 04 Lts 4 1 5 Ensure Events That Modify User Gr · cyberstrikeusCollect audit events for modifications to user and group identity files
- ▌ Cis Ubuntu 14 04 Lts 4 1 6 Ensure Events That Modify The Sys · cyberstrikeusCollect audit events for changes to network environment files and system calls
- ▌ Cis Ubuntu 14 04 Lts 4 1 7 Ensure Events That Modify The Sys · cyberstrikeusCollect audit events for modifications to SELinux/AppArmor mandatory access controls
- ▌ Cis Ubuntu 14 04 Lts 4 1 8 Ensure Login And Logout Events Ar · cyberstrikeusCollect audit events for login and logout activity from faillog, lastlog, and tallylog
- ▌ Cis Ubuntu 14 04 Lts 4 1 9 Ensure Session Initiation Informa · cyberstrikeusCollect audit events for session initiation from utmp, wtmp, and btmp files
- ▌ Cis Ubuntu 14 04 Lts 4 2 3 Ensure Rsyslog Or Syslog Ng Is In · cyberstrikeusEnsure either rsyslog or syslog-ng is installed for system logging
- ▌ Cis Ubuntu 14 04 Lts 4 2 4 Ensure Permissions On All Logfile · cyberstrikeusEnsure restrictive permissions on all log files in /var/log to protect sensitive data
- ▌ Cis Ubuntu 14 04 Lts 5 1 1 Ensure Cron Daemon Is Enabled · cyberstrikeusVerify the cron daemon is enabled to execute scheduled batch jobs on the system
- ▌ Cis Ubuntu 14 04 Lts 5 1 2 Ensure Permissions On Etc Crontab · cyberstrikeusVerify /etc/crontab ownership and permissions are restricted to root with no group/other access
- ▌ Cis Ubuntu 14 04 Lts 5 1 3 Ensure Permissions On Etc Cron Ho · cyberstrikeusVerify /etc/cron.hourly ownership and permissions are restricted to root with no group/other access
- ▌ Cis Ubuntu 14 04 Lts 5 1 4 Ensure Permissions On Etc Cron Da · cyberstrikeusVerify /etc/cron.daily ownership and permissions are restricted to root with no group/other access
- ▌ Cis Ubuntu 14 04 Lts 5 1 5 Ensure Permissions On Etc Cron We · cyberstrikeusVerify /etc/cron.weekly ownership and permissions are restricted to root with no group/other access
- ▌ Cis Ubuntu 14 04 Lts 5 1 6 Ensure Permissions On Etc Cron Mo · cyberstrikeusVerify /etc/cron.monthly ownership and permissions are restricted to root with no group/other access
- ▌ Cis Ubuntu 14 04 Lts 5 1 7 Ensure Permissions On Etc Cron D · cyberstrikeusVerify /etc/cron.d ownership and permissions are restricted to root with no group/other access
- ▌ Cis Ubuntu 14 04 Lts 5 1 8 Ensure At Cron Is Restricted To A · cyberstrikeusVerify at and cron access is restricted using allow files with proper ownership and permissions
- ▌ Cis Ubuntu 14 04 Lts 5 2 1 Ensure Permissions On Etc Ssh Ssh · cyberstrikeusVerify /etc/ssh/sshd_config ownership and permissions are restricted to root with no group/other access
- ▌ Cis Ubuntu 14 04 Lts 5 2 2 Ensure Ssh Protocol Is Set To 2 · cyberstrikeusVerify SSH is configured to use Protocol version 2 only
- ▌ Cis Ubuntu 14 04 Lts 5 2 3 Ensure Ssh Loglevel Is Set To Inf · cyberstrikeusVerify SSH LogLevel is configured to INFO for adequate logging of login activity
- ▌ Cis Ubuntu 14 04 Lts 5 2 4 Ensure Ssh X11 Forwarding Is Disa · cyberstrikeusVerify SSH X11 forwarding is disabled to prevent remote graphic connection tunneling
- ▌ Cis Ubuntu 14 04 Lts 5 2 5 Ensure Ssh Maxauthtries Is Set To · cyberstrikeusVerify SSH MaxAuthTries is set to 4 or less to limit brute force attack risk
- ▌ Cis Ubuntu 14 04 Lts 5 2 6 Ensure Ssh Ignorerhosts Is Enable · cyberstrikeusVerify SSH IgnoreRhosts is set to yes to prevent .rhosts-based authentication
- ▌
- ▌
- ▌ Cis Bind9 V301 2 6 · cyberstrikeusSet Group named or root for BIND Directories and Files (Automated)
- ▌ Cis Bind9 V301 2 7 · cyberstrikeusSet Group and Other Permissions Read-Only for BIND Non-Runtime Directories (Automated)
- ▌ Cis Bind9 V301 2 8 · cyberstrikeusSet Group and Other Permissions Read-Only for All BIND Files (Automated)
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ Cis Eks V160 3 1 1 · cyberstrikeusEnsure that the kubeconfig file permissions are set to 644 or more restrictive (Automated)
- ▌ Cis Eks V160 3 1 2 · cyberstrikeusEnsure that the kubelet kubeconfig file ownership is set to root:root (Automated)
- ▌ Cis Eks V160 3 1 3 · cyberstrikeusEnsure that the kubelet configuration file has permissions set to 644 or more restrictive (Automated)
- ▌ Cis Eks V160 3 1 4 · cyberstrikeusEnsure that the kubelet configuration file ownership is set to root:root (Automated)
- ▌
- ▌ Cis Eks V160 3 2 2 · cyberstrikeusEnsure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
- ▌
- ▌
- ▌ Cis Eks V160 3 2 5 · cyberstrikeusEnsure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
- ▌ Cis Eks V160 3 2 6 · cyberstrikeusEnsure that the --make-iptables-util-chains argument is set to true (Automated)
- ▌ Cis Eks V160 3 2 7 · cyberstrikeusEnsure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)
- ▌ Cis Eks V160 3 2 8 · cyberstrikeusEnsure that the --rotate-certificates argument is not present or is set to true (Automated)
- ▌ Cis Eks V160 3 2 9 · cyberstrikeusEnsure that the RotateKubeletServerCertificate argument is set to true (Automated)
- ▌ Cis Eks V160 4 1 1 · cyberstrikeusEnsure that the cluster-admin role is only used where required (Automated)
- ▌
- ▌
- ▌
- ▌ Cis Eks V160 4 1 5 · cyberstrikeusEnsure that default service accounts are not actively used (Automated)
- ▌ Cis Eks V160 4 1 6 · cyberstrikeusEnsure that Service Account Tokens are only mounted where necessary (Automated)
- ▌ Cis Eks V160 4 1 7 · cyberstrikeusCluster Access Manager API to streamline and enhance the management of access controls within EKS clusters (Automated)
- ▌ Cis Eks V160 4 1 8 · cyberstrikeusLimit use of the Bind, Impersonate and Escalate permissions in the Kubernetes cluster (Manual)
- ▌
- ▌ Cis Eks V160 4 2 2 · cyberstrikeusMinimize the admission of containers wishing to share the host process ID namespace (Automated)
- ▌ Cis Eks V160 4 2 3 · cyberstrikeusMinimize the admission of containers wishing to share the host IPC namespace (Automated)