← all publishers

cyberstrikeus

@cyberstrikeus source repo

7171 published skills · page 8 of 72

  1. Cis Azure Foundations 8 1 10 · cyberstrikeus
    Ensure That Microsoft Defender for Resource Manager Is Set To 'On'
    0
    installs
  2. Cis Azure Foundations 8 1 11 · cyberstrikeus
    Ensure That Microsoft Defender Recommendation for 'Apply system updates' status is 'Completed'
    0
    installs
  3. Cis Azure Foundations 8 1 12 · cyberstrikeus
    Ensure the Microsoft Defender for Cloud 'Security alert emails' is configured
    0
    installs
  4. Cis Azure Foundations 8 1 13 · cyberstrikeus
    Ensure 'Additional email addresses' for the subscription is configured with a security contact email
    0
    installs
  5. Cis Azure Foundations 8 1 14 · cyberstrikeus
    Ensure That 'Notify about alerts with the following severity' is Set to 'High'
    0
    installs
  6. Cis Azure Foundations 8 1 15 · cyberstrikeus
    Ensure that Microsoft Defender External Attack Surface Monitoring (EASM) is enabled
    0
    installs
  7. Cis Azure Foundations 8 1 16 · cyberstrikeus
    Ensure that Microsoft Cloud Security Benchmark policies are not set to 'Disabled'
    0
    installs
  8. Cis Azure Foundations 8 3 10 · cyberstrikeus
    Ensure 'Public network access' for Key Vault is set to 'Disabled'
    0
    installs
  9. Cis Azure Foundations 8 3 11 · cyberstrikeus
    Ensure Azure Resource Manager CanNotDelete Locks are considered for Key Vaults
    0
    installs
  10. Cis Azure Foundations 9 3 10 · cyberstrikeus
    Ensure Azure Resource Manager ReadOnly locks are considered for Azure Storage Accounts
    0
    installs
  11. Cis Azure Foundations 9 3 11 · cyberstrikeus
    Ensure Redundancy is set to 'geo-redundant storage (GRS)' on critical Azure Storage Accounts
    0
    installs
  12. Cis Azure Storage 17 10 · cyberstrikeus
    Ensure Storage Logging is Enabled for Table Service for 'Read', 'Write', and 'Delete' Requests
    0
    installs
  13. Cis Azure Storage 17 11 · cyberstrikeus
    Ensure the 'Minimum TLS version' for storage accounts is set to 'Version 1.2'
    0
    installs
  14. Cis Azure Storage 17 12 · cyberstrikeus
    Ensure 'Cross Tenant Replication' is not enabled
    0
    installs
  15. Cis Azure Storage 17 13 · cyberstrikeus
    Ensure that 'Allow Blob Anonymous Access' is set to 'Disabled'
    0
    installs
  16. Cis Azure Storage 17 14 · cyberstrikeus
    Ensure Azure Resource Manager Delete locks are applied to Azure Storage Accounts
    0
    installs
  17. Cis Azure Storage 17 15 · cyberstrikeus
    Ensure Azure Resource Manager ReadOnly locks are considered for Azure Storage Accounts
    0
    installs
  18. Cis Azure Storage 17 16 · cyberstrikeus
    Ensure Redundancy is set to 'geo-redundant storage (GRS)' on critical Azure Storage Accounts
    0
    installs
  19. Cis Azure Storage 5 1 1 · cyberstrikeus
    Ensure soft delete on Backup vaults is Enabled
    0
    installs
  20. Cis Azure Storage 5 1 2 · cyberstrikeus
    Ensure immutability for Backup vaults is Enabled
    0
    installs
  21. Cis Azure Storage 5 1 3 · cyberstrikeus
    Ensure backup data in Backup vaults is encrypted using customer-managed keys (CMK)
    0
    installs
  22. Cis Azure Storage 5 1 4 · cyberstrikeus
    Ensure 'Use infrastructure encryption for this vault' is enabled on Backup vaults
    0
    installs
  23. Cis Azure Storage 5 1 5 · cyberstrikeus
    Ensure 'Cross Region Restore' is set to 'Enabled' on Backup vaults
    0
    installs
  24. Cis Azure Storage 5 1 6 · cyberstrikeus
    Ensure 'Cross Subscription Restore' is set to 'Disabled' or 'Permanently Disabled' on Backup vaults
    0
    installs
  25. Cis Azure Storage 5 2 1 · cyberstrikeus
    Ensure soft delete on Recovery Services vaults is Enabled
    0
    installs
  26. Cis Azure Storage 5 2 2 · cyberstrikeus
    Ensure immutability for Recovery Services vaults is Enabled
    0
    installs
  27. Cis Azure Storage 5 2 3 · cyberstrikeus
    Ensure backup data in Recovery Services vaults is encrypted using customer-managed keys (CMK)
    0
    installs
  28. Cis Azure Storage 5 2 4 · cyberstrikeus
    Ensure 'Use infrastructure encryption for this vault' is enabled on Recovery Services vaults
    0
    installs
  29. Cis Azure Storage 5 2 5 · cyberstrikeus
    Ensure public network access on Recovery Services vaults is Disabled
    0
    installs
  30. Cis Azure Storage 5 2 6 · cyberstrikeus
    Ensure 'Cross Region Restore' is set to 'Enabled' on Recovery Services vaults
    0
    installs
  31. Cis Azure Storage 5 2 7 · cyberstrikeus
    Ensure 'Cross Subscription Restore' is set to 'Disabled' or 'Permanently Disabled' on Recovery Services vaults
    0
    installs
  32. Cis Ubuntu 14 04 Lts 1 1 1 1 Ensure Mounting Of Cramfs Files · cyberstrikeus
    Ensure the cramfs filesystem type is disabled to reduce attack surface
    0
    installs
  33. Cis Ubuntu 14 04 Lts 1 1 1 2 Ensure Mounting Of Freevxfs Fil · cyberstrikeus
    Ensure the freevxfs filesystem type is disabled to reduce attack surface
    0
    installs
  34. Cis Ubuntu 14 04 Lts 1 1 1 3 Ensure Mounting Of Jffs2 Filesy · cyberstrikeus
    Ensure the jffs2 filesystem type is disabled to reduce attack surface
    0
    installs
  35. Cis Ubuntu 14 04 Lts 1 1 1 4 Ensure Mounting Of Hfs Filesyst · cyberstrikeus
    Ensure the hfs filesystem type is disabled to reduce attack surface
    0
    installs
  36. Cis Ubuntu 14 04 Lts 1 1 1 5 Ensure Mounting Of Hfsplus File · cyberstrikeus
    Ensure the hfsplus filesystem type is disabled to reduce attack surface
    0
    installs
  37. Cis Ubuntu 14 04 Lts 1 1 1 6 Ensure Mounting Of Udf Filesyst · cyberstrikeus
    Ensure the udf filesystem type is disabled to reduce attack surface
    0
    installs
  38. Cis Ubuntu 14 04 Lts 1 6 1 1 Ensure Selinux Is Not Disabled · cyberstrikeus
    Verify that SELinux is not disabled via GRUB bootloader parameters
    0
    installs
  39. Cis Ubuntu 14 04 Lts 1 6 1 2 Ensure The Selinux State Is Enf · cyberstrikeus
    Verify that SELinux is set to enforcing mode for mandatory access control
    0
    installs
  40. Cis Ubuntu 14 04 Lts 1 6 1 3 Ensure Selinux Policy Is Config · cyberstrikeus
    Verify that SELinux policy is configured to meet or exceed the default targeted policy
    0
    installs
  41. Cis Ubuntu 14 04 Lts 1 6 1 4 Ensure No Unconfined Daemons Ex · cyberstrikeus
    Verify that no daemons are running unconfined outside of SELinux policy restrictions
    0
    installs
  42. Cis Ubuntu 14 04 Lts 1 6 2 1 Ensure Apparmor Is Not Disabled · cyberstrikeus
    Verify that AppArmor is not disabled via GRUB bootloader parameters
    0
    installs
  43. Cis Ubuntu 14 04 Lts 1 6 2 2 Ensure All Apparmor Profiles Ar · cyberstrikeus
    Verify that all AppArmor profiles are loaded and in enforcing mode with no unconfined processes
    0
    installs
  44. Cis Ubuntu 14 04 Lts 1 7 1 1 Ensure Message Of The Day Is Co · cyberstrikeus
    Verify that /etc/motd does not contain OS version or system information that could aid attackers
    0
    installs
  45. Cis Ubuntu 14 04 Lts 1 7 1 2 Ensure Local Login Warning Bann · cyberstrikeus
    Verify that /etc/issue local login banner does not contain OS version information
    0
    installs
  46. Cis Ubuntu 14 04 Lts 1 7 1 3 Ensure Remote Login Warning Ban · cyberstrikeus
    Verify that /etc/issue.net remote login banner does not contain OS version information
    0
    installs
  47. Cis Ubuntu 14 04 Lts 1 7 1 4 Ensure Permissions On Etc Motd · cyberstrikeus
    Verify that /etc/motd has correct ownership and permissions to prevent unauthorized modification
    0
    installs
  48. Cis Ubuntu 14 04 Lts 1 7 1 5 Ensure Permissions On Etc Issue · cyberstrikeus
    Verify that /etc/issue has correct ownership and permissions to prevent unauthorized modification
    0
    installs
  49. Cis Ubuntu 14 04 Lts 1 7 1 6 Ensure Permissions On Etc Issue · cyberstrikeus
    Verify that /etc/issue.net has correct ownership and permissions to prevent unauthorized modification
    0
    installs
  50. Cis Ubuntu 14 04 Lts 2 2 1 1 Ensure Time Synchronization Is · cyberstrikeus
    Verify that NTP or chrony is installed for system time synchronization
    0
    installs
  51. Cis Ubuntu 14 04 Lts 2 2 1 2 Ensure Ntp Is Configured · cyberstrikeus
    Verify that NTP is properly configured with restrict options and running as ntp user
    0
    installs
  52. Cis Ubuntu 14 04 Lts 2 2 1 3 Ensure Chrony Is Configured · cyberstrikeus
    Verify that chrony is properly configured with remote time server
    0
    installs
  53. Cis Ubuntu 14 04 Lts 4 1 1 1 Ensure Audit Log Storage Size I · cyberstrikeus
    Configure the maximum size of the audit log file to prevent disk space exhaustion
    0
    installs
  54. Cis Ubuntu 14 04 Lts 4 1 1 2 Ensure System Is Disabled When · cyberstrikeus
    Configure auditd to halt the system when audit logs are full to prevent loss of audit data
    0
    installs
  55. Cis Ubuntu 14 04 Lts 4 1 1 3 Ensure Audit Logs Are Not Autom · cyberstrikeus
    Configure auditd to retain all audit logs by setting max_log_file_action to keep_logs
    0
    installs
  56. Cis Ubuntu 14 04 Lts 4 2 1 1 Ensure Rsyslog Service Is Enabl · cyberstrikeus
    Enable the rsyslog service to ensure system logging is active
    0
    installs
  57. Cis Ubuntu 14 04 Lts 4 2 1 2 Ensure Logging Is Configured · cyberstrikeus
    Configure rsyslog to capture appropriate logging for all facilities
    0
    installs
  58. Cis Ubuntu 14 04 Lts 4 2 1 3 Ensure Rsyslog Default File Per · cyberstrikeus
    Configure rsyslog to create log files with restrictive permissions (0640)
    0
    installs
  59. Cis Ubuntu 14 04 Lts 4 2 1 4 Ensure Rsyslog Is Configured To · cyberstrikeus
    Configure rsyslog to forward logs to a remote log host for centralized logging
    0
    installs
  60. Cis Ubuntu 14 04 Lts 4 2 1 5 Ensure Remote Rsyslog Messages · cyberstrikeus
    Configure rsyslog to accept remote messages only on designated log hosts
    0
    installs
  61. Cis Ubuntu 14 04 Lts 4 2 2 1 Ensure Syslog Ng Service Is Ena · cyberstrikeus
    Enable the syslog-ng service to ensure system logging is active
    0
    installs
  62. Cis Ubuntu 14 04 Lts 4 2 2 2 Ensure Logging Is Configured · cyberstrikeus
    Configure syslog-ng to capture appropriate logging for all facilities
    0
    installs
  63. Cis Ubuntu 14 04 Lts 4 2 2 3 Ensure Syslog Ng Default File P · cyberstrikeus
    Configure syslog-ng to create log files with restrictive permissions (0640)
    0
    installs
  64. Cis Ubuntu 14 04 Lts 4 2 2 4 Ensure Syslog Ng Is Configured · cyberstrikeus
    Configure syslog-ng to forward logs to a remote log host for centralized logging
    0
    installs
  65. Cis Ubuntu 14 04 Lts 4 2 2 5 Ensure Remote Syslog Ng Message · cyberstrikeus
    Configure syslog-ng to accept remote messages only on designated log hosts
    0
    installs
  66. Cis Ubuntu 14 04 Lts 5 4 1 1 Ensure Password Expiration Is 3 · cyberstrikeus
    Verify PASS_MAX_DAYS is set to 365 or less in /etc/login.defs for password expiration
    0
    installs
  67. Cis Ubuntu 14 04 Lts 5 4 1 2 Ensure Minimum Days Between Pas · cyberstrikeus
    Verify PASS_MIN_DAYS is set to 7 or more in /etc/login.defs to prevent rapid password cycling
    0
    installs
  68. Cis Ubuntu 14 04 Lts 5 4 1 3 Ensure Password Expiration Warn · cyberstrikeus
    Verify PASS_WARN_AGE is set to 7 or more in /etc/login.defs for password expiry warnings
    0
    installs
  69. Cis Ubuntu 14 04 Lts 5 4 1 4 Ensure Inactive Password Lock I · cyberstrikeus
    Verify inactive password lock is set to 30 days or less to disable dormant accounts
    0
    installs
  70. Cis Ubuntu 14 04 Lts 5 4 1 5 Ensure All Users Last Password · cyberstrikeus
    Verify no users have a password change date set in the future which could bypass expiration
    0
    installs
  71. Cis Ubuntu1604 V200 1 1 1 1 · cyberstrikeus
    Ensure mounting of cramfs filesystems is disabled
    0
    installs
  72. Cis Ubuntu1604 V200 1 1 1 2 · cyberstrikeus
    Ensure mounting of freevxfs filesystems is disabled
    0
    installs
  73. Cis Ubuntu1604 V200 1 1 1 3 · cyberstrikeus
    Ensure mounting of jffs2 filesystems is disabled
    0
    installs
  74. Cis Ubuntu1604 V200 1 1 1 4 · cyberstrikeus
    Ensure mounting of hfs filesystems is disabled
    0
    installs
  75. Cis Ubuntu1604 V200 1 1 1 5 · cyberstrikeus
    Ensure mounting of hfsplus filesystems is disabled
    0
    installs
  76. Cis Ubuntu1604 V200 1 1 1 6 · cyberstrikeus
    Ensure mounting of udf filesystems is disabled
    0
    installs
  77. Cis Ubuntu1604 V200 1 6 1 1 · cyberstrikeus
    Ensure AppArmor is installed
    0
    installs
  78. Cis Ubuntu1604 V200 1 6 1 2 · cyberstrikeus
    Ensure AppArmor is enabled in the bootloader configuration
    0
    installs
  79. Cis Ubuntu1604 V200 1 6 1 3 · cyberstrikeus
    Ensure all AppArmor Profiles are in enforce or complain mode
    0
    installs
  80. Cis Ubuntu1604 V200 1 6 1 4 · cyberstrikeus
    Ensure all AppArmor Profiles are enforcing
    0
    installs
  81. Cis Ubuntu1604 V200 2 1 1 1 · cyberstrikeus bundle
    Ensure time synchronization is in use
    0
    installs
  82. Cis Ubuntu1604 V200 2 1 1 2 · cyberstrikeus bundle
    Ensure systemd-timesyncd is configured
    0
    installs
  83. Cis Ubuntu1604 V200 2 1 1 3 · cyberstrikeus bundle
    Ensure chrony is configured
    0
    installs
  84. Cis Ubuntu1604 V200 2 1 1 4 · cyberstrikeus bundle
    Ensure ntp is configured
    0
    installs
  85. Cis Ubuntu1604 V200 3 5 1 1 · cyberstrikeus
    Ensure ufw is installed
    0
    installs
  86. Cis Ubuntu1604 V200 3 5 1 2 · cyberstrikeus
    Ensure iptables-persistent is not installed with ufw
    0
    installs
  87. Cis Ubuntu1604 V200 3 5 1 3 · cyberstrikeus
    Ensure ufw service is enabled
    0
    installs
  88. Cis Ubuntu1604 V200 3 5 1 4 · cyberstrikeus
    Ensure ufw loopback traffic is configured
    0
    installs
  89. Cis Ubuntu1604 V200 3 5 1 5 · cyberstrikeus
    Ensure ufw outbound connections are configured
    0
    installs
  90. Cis Ubuntu1604 V200 3 5 1 6 · cyberstrikeus
    Ensure ufw firewall rules exist for all open ports
    0
    installs
  91. Cis Ubuntu1604 V200 3 5 1 7 · cyberstrikeus
    Ensure ufw default deny firewall policy
    0
    installs
  92. Cis Ubuntu1604 V200 3 5 2 1 · cyberstrikeus
    Ensure nftables is installed
    0
    installs
  93. Cis Ubuntu1604 V200 3 5 2 2 · cyberstrikeus
    Ensure ufw is uninstalled or disabled with nftables
    0
    installs
  94. Cis Ubuntu1604 V200 3 5 2 3 · cyberstrikeus
    Ensure iptables are flushed with nftables
    0
    installs
  95. Cis Ubuntu1604 V200 3 5 2 4 · cyberstrikeus
    Ensure a nftables table exists
    0
    installs
  96. Cis Ubuntu1604 V200 3 5 2 5 · cyberstrikeus
    Ensure nftables base chains exist
    0
    installs
  97. Cis Ubuntu1604 V200 3 5 2 6 · cyberstrikeus
    Ensure nftables loopback traffic is configured
    0
    installs
  98. Cis Ubuntu1604 V200 3 5 2 7 · cyberstrikeus
    Ensure nftables outbound and established connections are configured
    0
    installs
  99. Cis Ubuntu1604 V200 3 5 2 8 · cyberstrikeus
    Ensure nftables default deny firewall policy
    0
    installs
  100. Cis Ubuntu1604 V200 3 5 2 9 · cyberstrikeus
    Ensure nftables service is enabled
    0
    installs