cyberstrikeus
- 7.2k skills
- 0 followers
- 1 day ago last updated
- ▌ Cis Azure Foundations 8 1 10 · cyberstrikeusEnsure That Microsoft Defender for Resource Manager Is Set To 'On'
- ▌ Cis Azure Foundations 8 1 11 · cyberstrikeusEnsure That Microsoft Defender Recommendation for 'Apply system updates' status is 'Completed'
- ▌ Cis Azure Foundations 8 1 12 · cyberstrikeusEnsure the Microsoft Defender for Cloud 'Security alert emails' is configured
- ▌ Cis Azure Foundations 8 1 13 · cyberstrikeusEnsure 'Additional email addresses' for the subscription is configured with a security contact email
- ▌ Cis Azure Foundations 8 1 14 · cyberstrikeusEnsure That 'Notify about alerts with the following severity' is Set to 'High'
- ▌ Cis Azure Foundations 8 1 15 · cyberstrikeusEnsure that Microsoft Defender External Attack Surface Monitoring (EASM) is enabled
- ▌ Cis Azure Foundations 8 1 16 · cyberstrikeusEnsure that Microsoft Cloud Security Benchmark policies are not set to 'Disabled'
- ▌ Cis Azure Foundations 8 3 10 · cyberstrikeusEnsure 'Public network access' for Key Vault is set to 'Disabled'
- ▌ Cis Azure Foundations 8 3 11 · cyberstrikeusEnsure Azure Resource Manager CanNotDelete Locks are considered for Key Vaults
- ▌ Cis Azure Foundations 9 3 10 · cyberstrikeusEnsure Azure Resource Manager ReadOnly locks are considered for Azure Storage Accounts
- ▌ Cis Azure Foundations 9 3 11 · cyberstrikeusEnsure Redundancy is set to 'geo-redundant storage (GRS)' on critical Azure Storage Accounts
- ▌ Cis Azure Storage 17 10 · cyberstrikeusEnsure Storage Logging is Enabled for Table Service for 'Read', 'Write', and 'Delete' Requests
- ▌ Cis Azure Storage 17 11 · cyberstrikeusEnsure the 'Minimum TLS version' for storage accounts is set to 'Version 1.2'
- ▌
- ▌ Cis Azure Storage 17 13 · cyberstrikeusEnsure that 'Allow Blob Anonymous Access' is set to 'Disabled'
- ▌ Cis Azure Storage 17 14 · cyberstrikeusEnsure Azure Resource Manager Delete locks are applied to Azure Storage Accounts
- ▌ Cis Azure Storage 17 15 · cyberstrikeusEnsure Azure Resource Manager ReadOnly locks are considered for Azure Storage Accounts
- ▌ Cis Azure Storage 17 16 · cyberstrikeusEnsure Redundancy is set to 'geo-redundant storage (GRS)' on critical Azure Storage Accounts
- ▌
- ▌
- ▌ Cis Azure Storage 5 1 3 · cyberstrikeusEnsure backup data in Backup vaults is encrypted using customer-managed keys (CMK)
- ▌ Cis Azure Storage 5 1 4 · cyberstrikeusEnsure 'Use infrastructure encryption for this vault' is enabled on Backup vaults
- ▌ Cis Azure Storage 5 1 5 · cyberstrikeusEnsure 'Cross Region Restore' is set to 'Enabled' on Backup vaults
- ▌ Cis Azure Storage 5 1 6 · cyberstrikeusEnsure 'Cross Subscription Restore' is set to 'Disabled' or 'Permanently Disabled' on Backup vaults
- ▌
- ▌
- ▌ Cis Azure Storage 5 2 3 · cyberstrikeusEnsure backup data in Recovery Services vaults is encrypted using customer-managed keys (CMK)
- ▌ Cis Azure Storage 5 2 4 · cyberstrikeusEnsure 'Use infrastructure encryption for this vault' is enabled on Recovery Services vaults
- ▌ Cis Azure Storage 5 2 5 · cyberstrikeusEnsure public network access on Recovery Services vaults is Disabled
- ▌ Cis Azure Storage 5 2 6 · cyberstrikeusEnsure 'Cross Region Restore' is set to 'Enabled' on Recovery Services vaults
- ▌ Cis Azure Storage 5 2 7 · cyberstrikeusEnsure 'Cross Subscription Restore' is set to 'Disabled' or 'Permanently Disabled' on Recovery Services vaults
- ▌ Cis Ubuntu 14 04 Lts 1 1 1 1 Ensure Mounting Of Cramfs Files · cyberstrikeusEnsure the cramfs filesystem type is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 1 1 1 2 Ensure Mounting Of Freevxfs Fil · cyberstrikeusEnsure the freevxfs filesystem type is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 1 1 1 3 Ensure Mounting Of Jffs2 Filesy · cyberstrikeusEnsure the jffs2 filesystem type is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 1 1 1 4 Ensure Mounting Of Hfs Filesyst · cyberstrikeusEnsure the hfs filesystem type is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 1 1 1 5 Ensure Mounting Of Hfsplus File · cyberstrikeusEnsure the hfsplus filesystem type is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 1 1 1 6 Ensure Mounting Of Udf Filesyst · cyberstrikeusEnsure the udf filesystem type is disabled to reduce attack surface
- ▌ Cis Ubuntu 14 04 Lts 1 6 1 1 Ensure Selinux Is Not Disabled · cyberstrikeusVerify that SELinux is not disabled via GRUB bootloader parameters
- ▌ Cis Ubuntu 14 04 Lts 1 6 1 2 Ensure The Selinux State Is Enf · cyberstrikeusVerify that SELinux is set to enforcing mode for mandatory access control
- ▌ Cis Ubuntu 14 04 Lts 1 6 1 3 Ensure Selinux Policy Is Config · cyberstrikeusVerify that SELinux policy is configured to meet or exceed the default targeted policy
- ▌ Cis Ubuntu 14 04 Lts 1 6 1 4 Ensure No Unconfined Daemons Ex · cyberstrikeusVerify that no daemons are running unconfined outside of SELinux policy restrictions
- ▌ Cis Ubuntu 14 04 Lts 1 6 2 1 Ensure Apparmor Is Not Disabled · cyberstrikeusVerify that AppArmor is not disabled via GRUB bootloader parameters
- ▌ Cis Ubuntu 14 04 Lts 1 6 2 2 Ensure All Apparmor Profiles Ar · cyberstrikeusVerify that all AppArmor profiles are loaded and in enforcing mode with no unconfined processes
- ▌ Cis Ubuntu 14 04 Lts 1 7 1 1 Ensure Message Of The Day Is Co · cyberstrikeusVerify that /etc/motd does not contain OS version or system information that could aid attackers
- ▌ Cis Ubuntu 14 04 Lts 1 7 1 2 Ensure Local Login Warning Bann · cyberstrikeusVerify that /etc/issue local login banner does not contain OS version information
- ▌ Cis Ubuntu 14 04 Lts 1 7 1 3 Ensure Remote Login Warning Ban · cyberstrikeusVerify that /etc/issue.net remote login banner does not contain OS version information
- ▌ Cis Ubuntu 14 04 Lts 1 7 1 4 Ensure Permissions On Etc Motd · cyberstrikeusVerify that /etc/motd has correct ownership and permissions to prevent unauthorized modification
- ▌ Cis Ubuntu 14 04 Lts 1 7 1 5 Ensure Permissions On Etc Issue · cyberstrikeusVerify that /etc/issue has correct ownership and permissions to prevent unauthorized modification
- ▌ Cis Ubuntu 14 04 Lts 1 7 1 6 Ensure Permissions On Etc Issue · cyberstrikeusVerify that /etc/issue.net has correct ownership and permissions to prevent unauthorized modification
- ▌ Cis Ubuntu 14 04 Lts 2 2 1 1 Ensure Time Synchronization Is · cyberstrikeusVerify that NTP or chrony is installed for system time synchronization
- ▌ Cis Ubuntu 14 04 Lts 2 2 1 2 Ensure Ntp Is Configured · cyberstrikeusVerify that NTP is properly configured with restrict options and running as ntp user
- ▌ Cis Ubuntu 14 04 Lts 2 2 1 3 Ensure Chrony Is Configured · cyberstrikeusVerify that chrony is properly configured with remote time server
- ▌ Cis Ubuntu 14 04 Lts 4 1 1 1 Ensure Audit Log Storage Size I · cyberstrikeusConfigure the maximum size of the audit log file to prevent disk space exhaustion
- ▌ Cis Ubuntu 14 04 Lts 4 1 1 2 Ensure System Is Disabled When · cyberstrikeusConfigure auditd to halt the system when audit logs are full to prevent loss of audit data
- ▌ Cis Ubuntu 14 04 Lts 4 1 1 3 Ensure Audit Logs Are Not Autom · cyberstrikeusConfigure auditd to retain all audit logs by setting max_log_file_action to keep_logs
- ▌ Cis Ubuntu 14 04 Lts 4 2 1 1 Ensure Rsyslog Service Is Enabl · cyberstrikeusEnable the rsyslog service to ensure system logging is active
- ▌ Cis Ubuntu 14 04 Lts 4 2 1 2 Ensure Logging Is Configured · cyberstrikeusConfigure rsyslog to capture appropriate logging for all facilities
- ▌ Cis Ubuntu 14 04 Lts 4 2 1 3 Ensure Rsyslog Default File Per · cyberstrikeusConfigure rsyslog to create log files with restrictive permissions (0640)
- ▌ Cis Ubuntu 14 04 Lts 4 2 1 4 Ensure Rsyslog Is Configured To · cyberstrikeusConfigure rsyslog to forward logs to a remote log host for centralized logging
- ▌ Cis Ubuntu 14 04 Lts 4 2 1 5 Ensure Remote Rsyslog Messages · cyberstrikeusConfigure rsyslog to accept remote messages only on designated log hosts
- ▌ Cis Ubuntu 14 04 Lts 4 2 2 1 Ensure Syslog Ng Service Is Ena · cyberstrikeusEnable the syslog-ng service to ensure system logging is active
- ▌ Cis Ubuntu 14 04 Lts 4 2 2 2 Ensure Logging Is Configured · cyberstrikeusConfigure syslog-ng to capture appropriate logging for all facilities
- ▌ Cis Ubuntu 14 04 Lts 4 2 2 3 Ensure Syslog Ng Default File P · cyberstrikeusConfigure syslog-ng to create log files with restrictive permissions (0640)
- ▌ Cis Ubuntu 14 04 Lts 4 2 2 4 Ensure Syslog Ng Is Configured · cyberstrikeusConfigure syslog-ng to forward logs to a remote log host for centralized logging
- ▌ Cis Ubuntu 14 04 Lts 4 2 2 5 Ensure Remote Syslog Ng Message · cyberstrikeusConfigure syslog-ng to accept remote messages only on designated log hosts
- ▌ Cis Ubuntu 14 04 Lts 5 4 1 1 Ensure Password Expiration Is 3 · cyberstrikeusVerify PASS_MAX_DAYS is set to 365 or less in /etc/login.defs for password expiration
- ▌ Cis Ubuntu 14 04 Lts 5 4 1 2 Ensure Minimum Days Between Pas · cyberstrikeusVerify PASS_MIN_DAYS is set to 7 or more in /etc/login.defs to prevent rapid password cycling
- ▌ Cis Ubuntu 14 04 Lts 5 4 1 3 Ensure Password Expiration Warn · cyberstrikeusVerify PASS_WARN_AGE is set to 7 or more in /etc/login.defs for password expiry warnings
- ▌ Cis Ubuntu 14 04 Lts 5 4 1 4 Ensure Inactive Password Lock I · cyberstrikeusVerify inactive password lock is set to 30 days or less to disable dormant accounts
- ▌ Cis Ubuntu 14 04 Lts 5 4 1 5 Ensure All Users Last Password · cyberstrikeusVerify no users have a password change date set in the future which could bypass expiration
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ Cis Ubuntu1604 V200 1 6 1 2 · cyberstrikeusEnsure AppArmor is enabled in the bootloader configuration
- ▌ Cis Ubuntu1604 V200 1 6 1 3 · cyberstrikeusEnsure all AppArmor Profiles are in enforce or complain mode
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ Cis Ubuntu1604 V200 3 5 2 7 · cyberstrikeusEnsure nftables outbound and established connections are configured
- ▌
- ▌