← all publishers

cyberstrikeus

@cyberstrikeus source repo

7171 published skills · page 57 of 72

  1. Si 7 6 Cryptographic Protection · cyberstrikeus
    Implement cryptographic mechanisms to detect unauthorized changes to software, firmware, and information.
    0 installs
  2. Sr 9 Tamper Resistance And Detection · cyberstrikeus
    Implement a tamper protection program for the system, system component, or system service.
    0 installs
  3. Cis Docker V160 1 1 10 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/default/docker
    0 installs
  4. Cis Docker V160 1 1 11 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/docker/daemon.json
    0 installs
  5. Cis Docker V160 1 1 12 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/containerd/config.toml
    0 installs
  6. Cis Docker V160 1 1 13 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/sysconfig/docker
    0 installs
  7. Cis Docker V160 1 1 14 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd
    0 installs
  8. Cis Docker V160 1 1 15 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd-shim
    0 installs
  9. Cis Docker V160 1 1 16 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd-shim-runc-v1
    0 installs
  10. Cis Docker V160 1 1 17 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd-shim-runc-v2
    0 installs
  11. Cis Docker V160 1 1 18 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/runc
    0 installs
  12. Cis Docker V170 1 1 10 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/default/docker
    0 installs
  13. Cis Docker V170 1 1 11 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/docker/daemon.json
    0 installs
  14. Cis Docker V170 1 1 12 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/containerd/config.toml
    0 installs
  15. Cis Docker V170 1 1 13 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /etc/sysconfig/docker
    0 installs
  16. Cis Docker V170 1 1 14 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd
    0 installs
  17. Cis Docker V170 1 1 15 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd-shim
    0 installs
  18. Cis Docker V170 1 1 16 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd-shim-runc-v1
    0 installs
  19. Cis Docker V170 1 1 17 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/containerd-shim-runc-v2
    0 installs
  20. Cis Docker V170 1 1 18 · cyberstrikeus
    Ensure auditing is configured for Docker files and directories - /usr/bin/runc
    0 installs
  21. Role Based Training 03 02 02 Role Based Training · cyberstrikeus
    Provide role-based security training to organizational personnel: Before authorizing access to the system or CUI, before performing assigned duties, a
    0 installs
  22. Protection Of Audit Information 03 03 08 Protection Of Audit · cyberstrikeus
    Protect audit information and audit logging tools from unauthorized access, modification, and deletion.
    0 installs
  23. Configuration Change Control 03 04 03 Configuration Change C · cyberstrikeus
    Define the types of changes to the system that are configuration-controlled.
    0 installs
  24. Ca 3 1 Unclassified National Security System Connections · cyberstrikeus
    Unclassified National Security System Connections
    0 installs
  25. Ia 12 4 In Person Validation And Verification · cyberstrikeus
    Require that the validation and verification of identity evidence be conducted in person before a designated registration authority.
    0 installs
  26. Ia 13 2 Verification Of Identity Assertions And Access Token · cyberstrikeus
    The source and integrity of identity assertions and access tokens are verified before granting access to system and information resources.
    0 installs
  27. Ia 2 8 Access To Accounts Replay Resistant · cyberstrikeus
    Implement replay-resistant authentication mechanisms for access to [organization-defined].
    0 installs
  28. Ia 4 9 Attribute Maintenance And Protection · cyberstrikeus
    Maintain the attributes for each uniquely identified individual, device, or service in [organization-defined].
    0 installs
  29. Ia 4 2 Supervisor Authorization · cyberstrikeus
    Supervisor Authorization
    0 installs
  30. Ia 5 12 Biometric Authentication Performance · cyberstrikeus
    For biometric-based authentication, employ mechanisms that satisfy the following biometric quality requirements [organization-defined].
    0 installs
  31. Ia 5 8 Multiple System Accounts · cyberstrikeus
    Implement [organization-defined] to manage the risk of compromise due to individuals having accounts on multiple systems.
    0 installs
  32. Pe 14 Environmental Controls · cyberstrikeus
    Maintain [organization-defined] levels within the facility where the system resides at [organization-defined] ;
    0 installs
  33. Pe 3 Physical Access Control · cyberstrikeus
    Enforce physical access authorizations at [organization-defined] by: Verifying individual access authorizations before granting access to the facility
    0 installs
  34. Pe 3 2 Facility And Systems · cyberstrikeus
    Perform security checks [organization-defined] at the physical perimeter of the facility or system for exfiltration of information or removal of syste
    0 installs
  35. Pt 5 2 Privacy Act Statements · cyberstrikeus
    Include Privacy Act statements on forms that collect information that will be maintained in a Privacy Act system of records, or provide Privacy Act st
    0 installs
  36. Sa 19 1 Anti Counterfeit Training · cyberstrikeus
    Anti-counterfeit Training
    0 installs
  37. Sa 19 4 Anti Counterfeit Scanning · cyberstrikeus
    Anti-counterfeit Scanning
    0 installs
  38. Sa 3 System Development Life Cycle · cyberstrikeus
    Acquire, develop, and manage the system using [organization-defined] that incorporates information security and privacy considerations;
    0 installs
  39. Sa 4 4 Assignment Of Components To Systems · cyberstrikeus
    Assignment of Components to Systems
    0 installs
  40. Sa 9 2 Identification Of Functions Ports Protocols And Servi · cyberstrikeus
    Require providers of the following external system services to identify the functions, ports, protocols, and other services required for the use of su
    0 installs
  41. Sc 31 Covert Channel Analysis · cyberstrikeus
    Perform a covert channel analysis to identify those aspects of communications within the system that are potential avenues for covert [organization...
    0 installs
  42. Sc 35 External Malicious Code Identification · cyberstrikeus
    Include system components that proactively seek to identify network-based malicious code or malicious websites.
    0 installs
  43. Sc 42 4 Notice Of Collection · cyberstrikeus
    Employ the following measures to facilitate an individual’s awareness that personally identifiable information is being collected by [organization-def
    0 installs
  44. Sc 7 20 Dynamic Isolation And Segregation · cyberstrikeus
    Provide the capability to dynamically isolate [organization-defined] from other system components.
    0 installs
  45. Sc 7 10 Prevent Exfiltration · cyberstrikeus
    Prevent the exfiltration of information;
    0 installs
  46. Si 4 13 Analyze Traffic And Event Patterns · cyberstrikeus
    Analyze communications traffic and event patterns for the system;
    0 installs
  47. Si 4 24 Indicators Of Compromise · cyberstrikeus
    Discover, collect, and distribute to [organization-defined] , indicators of compromise provided by [organization-defined].
    0 installs
  48. T1070 001 Clear Windows Event Logs · cyberstrikeus
    Adversaries may clear Windows Event Logs to hide the activity of an intrusion.
    0 installs
  49. T1134 001 Token Impersonationtheft · cyberstrikeus
    Adversaries may duplicate then impersonate another user's existing token to escalate privileges and bypass access controls.
    0 installs
  50. T1216 002 Syncappvpublishingserver · cyberstrikeus
    Adversaries may abuse SyncAppvPublishingServer.vbs to proxy execution of malicious PowerShell commands.
    0 installs
  51. T1550 Use Alternate Authentication Material · cyberstrikeus
    Adversaries may use alternate authentication material, such as password hashes, Kerberos tickets, and application access tokens, in order to move laterally within an environment and bypass normal s...
    0 installs
  52. T1550 001 Application Access Token · cyberstrikeus
    Adversaries may use stolen application access tokens to bypass the typical authentication process and access restricted accounts, information, or services on remote systems.
    0 installs
  53. T1553 004 Install Root Certificate · cyberstrikeus
    Adversaries may install a root certificate on a compromised system to avoid warnings when connecting to adversary controlled web servers.
    0 installs
  54. T1562 004 Disable Or Modify System Firewall · cyberstrikeus
    Adversaries may disable or modify system firewalls in order to bypass controls limiting network usage.
    0 installs
  55. T1021 001 Remote Desktop Protocol · cyberstrikeus
    Adversaries may use Valid Accounts to log into a computer using the Remote Desktop Protocol (RDP).
    0 installs
  56. T1021 002 Smbwindows Admin Shares · cyberstrikeus
    Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
    0 installs
  57. T1011 Exfiltration Over Other Network Medium · cyberstrikeus
    Adversaries may attempt to exfiltrate data over a different network medium than the command and control channel.
    0 installs
  58. T1011 001 Exfiltration Over Bluetooth · cyberstrikeus
    Adversaries may attempt to exfiltrate data over Bluetooth rather than the command and control channel.
    0 installs
  59. T1048 001 Exfiltration Over Symmetric Encrypted Non C2 Proto · cyberstrikeus
    Adversaries may steal data by exfiltrating it over a symmetrically encrypted network protocol other than that of the existing command and control channel.
    0 installs
  60. T1591 Gather Victim Org Information · cyberstrikeus
    Adversaries may gather information about the victim's organization that can be used during targeting.
    0 installs
  61. Separation Of Duties 03 01 04 Separation Of Duties · cyberstrikeus
    Identify the duties of individuals requiring separation.
    0 installs
  62. Rules Of Behavior 03 15 03 Rules Of Behavior · cyberstrikeus
    Establish rules that describe the responsibilities and expected behavior for system usage and protecting CUI.
    0 installs
  63. Protect All Forms Of Code From Unauthorized Access And Tampe · cyberstrikeus
    Help prevent unauthorized changes to code, both inadvertent and intentional, which could circumvent or negate the intended security characteristics...
    0 installs
  64. Ac 17 7 Additional Protection For Security Function Access · cyberstrikeus
    Additional Protection for Security Function Access
    0 installs
  65. Ac 17 8 Disable Nonsecure Network Protocols · cyberstrikeus
    Disable Nonsecure Network Protocols
    0 installs
  66. Ac 20 1 Limits On Authorized Use · cyberstrikeus
    Permit authorized individuals to use an external system to access the system or to process, store, or transmit organization-controlled information onl
    0 installs
  67. Ac 22 Publicly Accessible Content · cyberstrikeus
    Designate individuals authorized to make information publicly accessible;
    0 installs
  68. Ac 3 7 Role Based Access Control · cyberstrikeus
    Enforce a role-based access control policy over defined subjects and objects and control access based upon [organization-defined].
    0 installs
  69. Ac 4 Information Flow Enforcement · cyberstrikeus
    Enforce approved authorizations for controlling the flow of information within the system and between connected systems based on [organization-defined
    0 installs
  70. Ac 4 13 Decomposition Into Policy Relevant Subcomponents · cyberstrikeus
    When transferring information between different security domains, decompose information into [organization-defined] for submission to policy enforceme
    0 installs
  71. Ac 4 15 Detection Of Unsanctioned Information · cyberstrikeus
    When transferring information between different security domains, examine the information for the presence of [organization-defined] and prohibit the
    0 installs
  72. Ac 6 7 Review Of User Privileges · cyberstrikeus
    Review [organization-defined] the privileges assigned to [organization-defined] to validate the need for such privileges;
    0 installs
  73. Cm 14 Signed Components · cyberstrikeus
    Prevent the installation of [organization-defined] without verification that the component has been digitally signed using a certificate that is recog
    0 installs
  74. Cm 7 1 Periodic Review · cyberstrikeus
    Review the system [organization-defined] to identify unnecessary and/or nonsecure functions, ports, protocols, software, and services;
    0 installs
  75. Cp 6 Alternate Storage Site · cyberstrikeus
    Establish an alternate storage site, including necessary agreements to permit the storage and retrieval of system backup information;
    0 installs
  76. Cp 7 3 Priority Of Service · cyberstrikeus
    Develop alternate processing site agreements that contain priority-of-service provisions in accordance with availability requirements (including recov
    0 installs
  77. Cp 7 4 Preparation For Use · cyberstrikeus
    Prepare the alternate processing site so that the site can serve as the operational site supporting essential mission and business functions.
    0 installs
  78. Ir 3 Incident Response Testing · cyberstrikeus
    Test the effectiveness of the incident response capability for the system [organization-defined] using the following tests: [organization-defined].
    0 installs
  79. Ir 3 3 Continuous Improvement · cyberstrikeus
    Use qualitative and quantitative data from testing to: Determine the effectiveness of incident response processes; Continuously improve incident respo
    0 installs
  80. Ir 5 1 Automated Tracking Data Collection And Analysis · cyberstrikeus
    Track incidents and collect and analyze incident information using [organization-defined].
    0 installs
  81. Ma 3 3 Prevent Unauthorized Removal · cyberstrikeus
    Prevent the removal of maintenance equipment containing organizational information by: Verifying that there is no organizational information contained
    0 installs
  82. Ma 3 6 Software Updates And Patches · cyberstrikeus
    Inspect maintenance tools to ensure the latest software updates and patches are installed.
    0 installs
  83. Pl 6 Security Related Activity Planning · cyberstrikeus
    Security-related Activity Planning
    0 installs
  84. Pl 8 Security And Privacy Architectures · cyberstrikeus
    Develop security and privacy architectures for the system that: Describe the requirements and approach to be taken for protecting the confidentiality,
    0 installs
  85. Pm 22 Personally Identifiable Information Quality Management · cyberstrikeus
    Develop and document organization-wide policies and procedures for: Reviewing for the accuracy, relevance, timeliness, and completeness of personally
    0 installs
  86. Pm 29 Risk Management Program Leadership Roles · cyberstrikeus
    Appoint a Senior Accountable Official for Risk Management to align organizational information security and privacy management processes with strate...
    0 installs
  87. Pm 9 Risk Management Strategy · cyberstrikeus
    Develops a comprehensive strategy to manage: Security risk to organizational operations and assets, individuals, other organizations, and the Nation a
    0 installs
  88. Ps 3 2 Formal Indoctrination · cyberstrikeus
    Verify that individuals accessing a system processing, storing, or transmitting types of classified information that require formal indoctrination, ar
    0 installs
  89. Pt 4 Consent · cyberstrikeus
    Implement [organization-defined] for individuals to consent to the processing of their personally identifiable information prior to its collection tha
    0 installs
  90. Ra 3 3 Dynamic Threat Awareness · cyberstrikeus
    Determine the current cyber threat environment on an ongoing basis using [organization-defined].
    0 installs
  91. Ra 5 4 Discoverable Information · cyberstrikeus
    Determine information about the system that is discoverable and take [organization-defined].
    0 installs
  92. Ra 5 6 Automated Trend Analyses · cyberstrikeus
    Compare the results of multiple vulnerability scans using [organization-defined].
    0 installs
  93. T0883 Internet Accessible Device · cyberstrikeus
    Adversaries may gain access into industrial environments through systems exposed directly to the internet for remote access rather than through External Remote Services.
    0 installs
  94. T1474 Supply Chain Compromise · cyberstrikeus
    Adversaries may manipulate products or product delivery mechanisms prior to receipt by a final consumer for the purpose of data or system compromise.
    0 installs
  95. T1474 001 Compromise Software Dependencies And Development T · cyberstrikeus
    Adversaries may manipulate products or product delivery mechanisms prior to receipt by a final consumer for the purpose of data or system compromise.
    0 installs
  96. T1541 Foreground Persistence · cyberstrikeus
    Adversaries may abuse Android's `startForeground()` API method to maintain continuous sensor access.
    0 installs
  97. T1632 Subvert Trust Controls · cyberstrikeus
    Adversaries may undermine security controls that will either warn users of untrusted activity or prevent execution of untrusted applications.
    0 installs
  98. T1420 File And Directory Discovery · cyberstrikeus
    Adversaries may enumerate files and directories or search in specific device locations for desired information within a filesystem.
    0 installs
  99. T1422 System Network Configuration Discovery · cyberstrikeus
    Adversaries may look for details about the network configuration and settings, such as IP and/or MAC addresses, of devices they access or through information discovery of remote systems.
    0 installs
  100. T1426 System Information Discovery · cyberstrikeus
    Adversaries may attempt to get detailed information about a device’s operating system and hardware, including versions, patches, and architecture.
    0 installs