← all publishers

cyberstrikeus

@cyberstrikeus source repo

7171 published skills · page 59 of 72

  1. T1596 Search Open Technical Databases · cyberstrikeus
    Adversaries may search freely available technical databases for information about victims that can be used during targeting.
    0 installs
  2. Sp 800 171 03 10 03 031003 · cyberstrikeus
    03.10.03
    0 installs
  3. Sp 800 171 03 10 04 031004 · cyberstrikeus
    03.10.04
    0 installs
  4. Sp 800 171 03 10 05 031005 · cyberstrikeus
    03.10.05
    0 installs
  5. Policy And Procedures 03 15 01 Policy And Procedures · cyberstrikeus
    Develop, document, and disseminate to organizational personnel or roles the policies and procedures needed to satisfy the security requirements for...
    0 installs
  6. Ac 13 Supervision And Review Access Control · cyberstrikeus
    Supervision and Review — Access Control
    0 installs
  7. Ac 16 10 Attribute Configuration By Authorized Individuals · cyberstrikeus
    Provide authorized individuals the capability to define or change the type and value of security and privacy attributes available for association with
    0 installs
  8. Ac 17 5 Monitoring For Unauthorized Connections · cyberstrikeus
    Monitoring for Unauthorized Connections
    0 installs
  9. Ac 19 4 Restrictions For Classified Information · cyberstrikeus
    Prohibit the use of unclassified mobile devices in facilities containing systems processing, storing, or transmitting classified information unless...
    0 installs
  10. Ac 21 1 Automated Decision Support · cyberstrikeus
    Employ [organization-defined] to enforce information-sharing decisions by authorized users based on access authorizations of sharing partners and acce
    0 installs
  11. Ac 3 11 Restrict Access To Specific Information Types · cyberstrikeus
    Restrict access to data repositories containing [organization-defined].
    0 installs
  12. Ac 3 15 Discretionary And Mandatory Access Control · cyberstrikeus
    Enforce [organization-defined] over the set of covered subjects and objects specified in the policy;
    0 installs
  13. Ac 4 18 Security Attribute Binding · cyberstrikeus
    Security Attribute Binding
    0 installs
  14. Ac 4 24 Internal Normalized Format · cyberstrikeus
    When transferring information between different security domains, parse incoming data into an internal normalized format and regenerate the data to be
    0 installs
  15. Ac 6 1 Authorize Access To Security Functions · cyberstrikeus
    Authorize access for [organization-defined] to: [organization-defined] ; and [organization-defined].
    0 installs
  16. Ac 6 3 Network Access To Privileged Commands · cyberstrikeus
    Authorize network access to [organization-defined] only for [organization-defined] and document the rationale for such access in the security plan for
    0 installs
  17. Ac 6 4 Separate Processing Domains · cyberstrikeus
    Provide separate processing domains to enable finer-grained allocation of user privileges.
    0 installs
  18. Ac 7 2 Purge Or Wipe Mobile Device · cyberstrikeus
    Purge or wipe information from [organization-defined] based on [organization-defined] after [organization-defined] consecutive, unsuccessful device lo
    0 installs
  19. At 2 1 Practical Exercises · cyberstrikeus
    Provide practical exercises in literacy training that simulate events and incidents.
    0 installs
  20. At 3 3 Practical Exercises · cyberstrikeus
    Provide practical exercises in security and privacy training that reinforce training objectives.
    0 installs
  21. Au 10 3 Chain Of Custody · cyberstrikeus
    Maintain reviewer or releaser credentials within the established chain of custody for information reviewed or released.
    0 installs
  22. Au 16 3 Disassociability · cyberstrikeus
    Implement [organization-defined] to disassociate individuals from audit information transmitted across organizational boundaries.
    0 installs
  23. Au 6 7 Permitted Actions · cyberstrikeus
    Specify the permitted actions for each [organization-defined] associated with the review, analysis, and reporting of audit record information.
    0 installs
  24. Cm 13 Data Action Mapping · cyberstrikeus
    Develop and document a map of system data actions.
    0 installs
  25. Cm 5 3 Signed Components · cyberstrikeus
    Signed Components
    0 installs
  26. Cp 10 2 Transaction Recovery · cyberstrikeus
    Implement transaction recovery for systems that are transaction-based.
    0 installs
  27. Cp 10 6 Component Protection · cyberstrikeus
    Protect system components used for recovery and reconstitution.
    0 installs
  28. Cp 4 Contingency Plan Testing · cyberstrikeus
    Test the contingency plan for the system [organization-defined] using the following tests to determine the effectiveness of the plan and the readin...
    0 installs
  29. Ir 4 8 Correlation With External Organizations · cyberstrikeus
    Coordinate with [organization-defined] to correlate and share [organization-defined] to achieve a cross-organization perspective on incident awareness
    0 installs
  30. Ir 4 3 Continuity Of Operations · cyberstrikeus
    Identify [organization-defined] and take the following actions in response to those incidents to ensure continuation of organizational mission and bus
    0 installs
  31. Ma 5 1 Individuals Without Appropriate Access · cyberstrikeus
    Implement procedures for the use of maintenance personnel that lack appropriate security clearances or are not U.S.
    0 installs
  32. Mp 6 3 Nondestructive Techniques · cyberstrikeus
    Apply nondestructive sanitization techniques to portable storage devices prior to connecting such devices to the system under the following circumstan
    0 installs
  33. Pm 21 Accounting Of Disclosures · cyberstrikeus
    Develop and maintain an accurate accounting of disclosures of personally identifiable information, including: Date, nature, and purpose of each disclo
    0 installs
  34. Ra 3 4 Predictive Cyber Analytics · cyberstrikeus
    Employ the following advanced automation and analytics capabilities to predict and identify risks to [organization-defined]: [organization-defined].
    0 installs
  35. Ra 5 11 Public Disclosure Program · cyberstrikeus
    Establish a public reporting channel for receiving reports of vulnerabilities in organizational systems and system components.
    0 installs
  36. Ra 5 8 Review Historic Audit Logs · cyberstrikeus
    Review historic audit logs to determine if a vulnerability identified in a [organization-defined] has been previously exploited within an [organizatio
    0 installs
  37. T0814 Denial Of Service · cyberstrikeus
    Adversaries may perform Denial-of-Service (DoS) attacks to disrupt expected device functionality.
    0 installs
  38. T0878 Alarm Suppression · cyberstrikeus
    Adversaries may target protection function alarms to prevent them from notifying operators of critical conditions.
    0 installs
  39. T0892 Change Credential · cyberstrikeus
    Adversaries may modify software and device credentials to prevent operator and responder access.
    0 installs
  40. T1398 Boot Or Logon Initialization Scripts · cyberstrikeus
    Adversaries may use scripts automatically executed at boot or logon initialization to establish persistence.
    0 installs
  41. T1641 001 Transmitted Data Manipulation · cyberstrikeus
    Adversaries may alter data en route to storage or other systems in order to manipulate external outcomes or hide activity.
    0 installs
  42. T1068 Exploitation For Privilege Escalation · cyberstrikeus
    Adversaries may exploit software vulnerabilities in an attempt to elevate privileges.
    0 installs
  43. T1546 015 Component Object Model Hijacking · cyberstrikeus
    Adversaries may establish persistence by executing malicious content triggered by hijacked references to Component Object Model (COM) objects.
    0 installs
  44. T1546 008 Accessibility Features · cyberstrikeus
    Adversaries may establish persistence and/or elevate privileges by executing malicious content triggered by accessibility features.
    0 installs
  45. T1027 Obfuscated Files Or Information · cyberstrikeus
    Adversaries may attempt to make an executable or file difficult to discover or analyze by encrypting, encoding, or otherwise obfuscating its contents on the system or in transit.
    0 installs
  46. T1036 003 Rename Legitimate Utilities · cyberstrikeus
    Adversaries may rename legitimate / system utilities to try to evade security mechanisms concerning the usage of those utilities.
    0 installs
  47. T1036 011 Overwrite Process Arguments · cyberstrikeus
    Adversaries may modify a process's in-memory arguments to change its name in order to appear as a legitimate or benign process.
    0 installs
  48. Cis Oke V150 4 1 6 · cyberstrikeus
    Ensure that Service Account Tokens are only mounted where necessary (Automated)
    0 installs
  49. Cis Oke V150 4 2 1 · cyberstrikeus
    Minimize the admission of privileged containers (Automated)
    0 installs
  50. Cis Oke V150 4 2 2 · cyberstrikeus
    Minimize the admission of containers wishing to share the host process ID namespace (Automated)
    0 installs
  51. Cis Oke V150 4 2 3 · cyberstrikeus
    Minimize the admission of containers wishing to share the host IPC namespace (Automated)
    0 installs
  52. Cis Oke V150 4 2 4 · cyberstrikeus
    Minimize the admission of containers wishing to share the host network namespace (Automated)
    0 installs
  53. Cis Oke V150 4 2 5 · cyberstrikeus
    Minimize the admission of containers with allowPrivilegeEscalation (Automated)
    0 installs
  54. Cis Oke V150 4 3 1 · cyberstrikeus
    Ensure latest CNI version is used (Manual)
    0 installs
  55. Cis Oke V150 4 3 2 · cyberstrikeus
    Ensure that all Namespaces have Network Policies defined (Automated)
    0 installs
  56. Cis Oke V150 4 4 1 · cyberstrikeus
    Prefer using secrets as files over secrets as environment variables (Manual)
    0 installs
  57. Cis Oke V150 4 4 2 · cyberstrikeus
    Consider external secret storage (Manual)
    0 installs
  58. Cis Oke V150 4 5 1 · cyberstrikeus
    Create administrative boundaries between resources using namespaces (Manual)
    0 installs
  59. Cis Oke V150 4 5 2 · cyberstrikeus
    Apply Security Context to Your Pods and Containers (Manual)
    0 installs
  60. Cis Oke V150 4 5 3 · cyberstrikeus
    The default namespace should not be used (Automated)
    0 installs
  61. Cis Oke V150 5 1 1 · cyberstrikeus
    Ensure Image Vulnerability Scanning using Oracle Vulnerability Scanning Service (Manual)
    0 installs
  62. Cis Oke V150 5 1 2 · cyberstrikeus
    Minimize user access to Oracle Cloud Infrastructure Container Registry (OCIR) (Manual)
    0 installs
  63. Cis Oke V150 5 1 3 · cyberstrikeus
    Minimize cluster access to read-only for Oracle Cloud Infrastructure Container Registry (OCIR) (Manual)
    0 installs
  64. Cis Oke V150 5 1 4 · cyberstrikeus
    Minimize Container Registries to only those approved (Manual)
    0 installs
  65. Cis Oke V150 5 2 1 · cyberstrikeus
    Prefer using dedicated OCI tenancies to manage OKE clusters (Manual)
    0 installs
  66. Cis Oke V150 5 3 1 · cyberstrikeus
    Ensure Kubernetes Secrets are encrypted (Manual)
    0 installs
  67. Cis Oke V150 5 4 1 · cyberstrikeus
    Restrict Access to the Control Plane Endpoint (Automated)
    0 installs
  68. Cis Oke V150 5 4 2 · cyberstrikeus
    Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
    0 installs
  69. Cis Oke V150 5 4 3 · cyberstrikeus
    Ensure clusters are created with Private Nodes (Automated)
    0 installs
  70. Cis Oke V150 5 4 4 · cyberstrikeus
    Ensure Network Policy is Enabled and set as appropriate (Automated)
    0 installs
  71. Cis Oke V150 5 4 5 · cyberstrikeus
    Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)
    0 installs
  72. Cis Oke V150 5 5 1 · cyberstrikeus
    Manage Kubernetes RBAC users with Oracle Cloud Infrastructure Identity and Access Management (IAM) (Manual)
    0 installs
  73. Cis Oke V170 2 1 1 · cyberstrikeus
    Client certificate authentication should not be used for users (Manual)
    0 installs
  74. Cis Oke V170 2 2 1 · cyberstrikeus
    Ensure access to OCI Audit service Log for OKE (Manual)
    0 installs
  75. Cis Oke V170 3 1 1 · cyberstrikeus
    Ensure that the kubelet-config.json file permissions are set to 644 or more restrictive (Automated)
    0 installs
  76. Cis Oke V170 3 1 2 · cyberstrikeus
    Ensure that the kubelet-config.json file ownership is set to root:root (Automated)
    0 installs
  77. Cis Oke V170 3 1 3 · cyberstrikeus
    Ensure that the kubelet configuration file has permissions set to 644 or more restrictive (Automated)
    0 installs
  78. Cis Oke V170 3 1 4 · cyberstrikeus
    Ensure that the kubelet configuration file ownership is set to root:root (Automated)
    0 installs
  79. Cis Oke V170 3 2 1 · cyberstrikeus
    Ensure that the --anonymous-auth argument is set to false (Automated)
    0 installs
  80. Cis Oke V170 3 2 2 · cyberstrikeus
    Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
    0 installs
  81. Cis Oke V170 3 2 3 · cyberstrikeus
    Ensure that the --client-ca-file argument is set as appropriate (Automated)
    0 installs
  82. Cis Oke V170 3 2 4 · cyberstrikeus
    Ensure that the --read-only-port argument is set to 0 (Automated)
    0 installs
  83. Cis Oke V170 3 2 5 · cyberstrikeus
    Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
    0 installs
  84. Cis Oke V170 3 2 6 · cyberstrikeus
    Ensure that the --make-iptables-util-chains argument is set to true (Automated)
    0 installs
  85. Cis Oke V170 3 2 7 · cyberstrikeus
    Ensure that the --event-qps argument is set to 0 or a level which ensures appropriate event capture (Automated)
    0 installs
  86. Cis Oke V170 3 2 8 · cyberstrikeus
    Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Automated)
    0 installs
  87. Cis Oke V170 3 2 9 · cyberstrikeus
    Ensure that the --rotate-certificates argument is not set to false (Automated)
    0 installs
  88. Cis Oke V170 4 1 1 · cyberstrikeus
    Ensure that the cluster-admin role is only used where required (Automated)
    0 installs
  89. Cis Oke V170 4 1 2 · cyberstrikeus
    Minimize access to secrets (Automated)
    0 installs
  90. Cis Oke V170 4 1 3 · cyberstrikeus
    Minimize wildcard use in Roles and ClusterRoles (Automated)
    0 installs
  91. Cis Oke V170 4 1 4 · cyberstrikeus
    Minimize access to create pods (Automated)
    0 installs
  92. Cis Oke V170 4 1 5 · cyberstrikeus
    Ensure that default service accounts are not actively used (Automated)
    0 installs
  93. Cis Oke V170 4 1 6 · cyberstrikeus
    Ensure that Service Account Tokens are only mounted where necessary (Automated)
    0 installs
  94. Cis Oke V170 4 2 1 · cyberstrikeus
    Minimize the admission of privileged containers (Automated)
    0 installs
  95. Cis Oke V170 4 2 2 · cyberstrikeus
    Minimize the admission of containers wishing to share the host process ID namespace (Automated)
    0 installs
  96. Cis Oke V170 4 2 3 · cyberstrikeus
    Minimize the admission of containers wishing to share the host IPC namespace (Automated)
    0 installs
  97. Cis Oke V170 4 2 4 · cyberstrikeus
    Minimize the admission of containers wishing to share the host network namespace (Automated)
    0 installs
  98. Cis Oke V170 4 2 5 · cyberstrikeus
    Minimize the admission of containers with allowPrivilegeEscalation (Automated)
    0 installs
  99. Cis Oke V170 4 3 1 · cyberstrikeus
    Ensure latest CNI version is used (Automated)
    0 installs
  100. Cis Oke V170 4 3 2 · cyberstrikeus
    Ensure that all Namespaces have Network Policies defined (Automated)
    0 installs