Skip to main content

Skills in this repository

CyberStrikeus/CyberStrike - Page 46

SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.

CyberStrikeus/CyberStrike

Showing 40 of 7,442 collected skills.

occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host process ID namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host IPC namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host network namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers with allowPrivilegeEscalation (Manual)

updated
occupation
Information Security Analysts
description

Ensure CNI plugin supports network policies (Manual)

updated
occupation
Information Security Analysts
description

Ensure that all Namespaces have Network Policies defined (Manual)

updated
occupation
Information Security Analysts
description

Prefer using secrets as files over secrets as environment variables (Automated)

updated
occupation
Information Security Analysts
description

Consider external secret storage (Manual)

updated
occupation
Information Security Analysts
description

Create administrative boundaries between resources using namespaces (Manual)

updated
occupation
Information Security Analysts
description

The default namespace should not be used (Automated)

updated
occupation
Information Security Analysts
description

Ensure Image Vulnerability Scanning using Amazon ECR image scanning or a third party provider (Automated)

updated
occupation
Information Security Analysts
description

Minimize user access to Amazon ECR (Manual)

updated
occupation
Information Security Analysts
description

Minimize cluster access to read-only for Amazon ECR (Manual)

updated
occupation
Information Security Analysts
description

Minimize Container Registries to only those approved (Manual)

updated
occupation
Information Security Analysts
description

Prefer using dedicated EKS Service Accounts (Automated)

updated
occupation
Information Security Analysts
description

Ensure Kubernetes Secrets are encrypted using Customer Master Keys (CMKs) managed in AWS KMS (Manual)

updated
occupation
Information Security Analysts
description

Restrict Access to the Control Plane Endpoint (Automated)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Nodes (Automated)

updated
occupation
Information Security Analysts
description

Ensure AmazonEKSNetworkingPolicy is Enabled and set as appropriate (Automated)

updated
occupation
Information Security Analysts
description

Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)

updated
occupation
Information Security Analysts
description

Manage Kubernetes RBAC users with AWS IAM Authenticator for Kubernetes or Upgrade to AWS CLI v1.16.156 or greater (Manual)

updated
occupation
Information Security Analysts
description

Enable audit Logs (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the kubeconfig file permissions are set to 644 or more restrictive (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the kubelet kubeconfig file ownership is set to root:root (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the azure.json file has permissions set to 644 or more restrictive (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the azure.json file ownership is set to root:root (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --anonymous-auth argument is set to false (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --client-ca-file argument is set as appropriate (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --read-only-port is secured (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --make-iptables-util-chains argument is set to true (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --rotate-certificates argument is not set to false (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the cluster-admin role is only used where required (Automated)

updated
occupation
Information Security Analysts
description

Minimize access to secrets (Automated)

updated
occupation
Information Security Analysts
description

Minimize wildcard use in Roles and ClusterRoles (Automated)

updated
occupation
Information Security Analysts
description

Minimize access to create pods (Automated)

updated
Showing 40 of 7,442 collected skills.