Skip to main content

Skills in this repository

CyberStrikeus/CyberStrike - Page 48

SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.

CyberStrikeus/CyberStrike

Showing 40 of 7,442 collected skills.

occupation
Information Security Analysts
description

Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the cluster-admin role is only used where required (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to the approval sub-resource of certificatesigningrequests objects (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to webhook configuration objects (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to the service account token creation (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to secrets (Manual)

updated
occupation
Information Security Analysts
description

Minimize wildcard use in Roles and ClusterRoles (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to create pods (Manual)

updated
occupation
Information Security Analysts
description

Ensure that default service accounts are not actively used (Manual)

updated
occupation
Information Security Analysts
description

Ensure Service Account Tokens are only mounted where necessary (Manual)

updated
occupation
Information Security Analysts
description

Limit use of Bind, Impersonate and Escalate permissions (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to create persistent volumes (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to the proxy sub-resource of nodes (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of privileged containers (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host process ID namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host IPC namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host network namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers with allowPrivilegeEscalation (Manual)

updated
occupation
Information Security Analysts
description

Ensure latest CNI version is used (Manual)

updated
occupation
Information Security Analysts
description

Ensure all Namespaces have Network Policies defined (Automated)

updated
occupation
Information Security Analysts
description

Prefer using secrets as files over secrets as environment variables (Automated)

updated
occupation
Information Security Analysts
description

Consider external secret storage (Manual)

updated
occupation
Information Security Analysts
description

Create administrative boundaries between resources using namespaces (Manual)

updated
occupation
Information Security Analysts
description

Apply Security Context to Your Pods and Containers (Manual)

updated
occupation
Information Security Analysts
description

The default namespace should not be used (Automated)

updated
occupation
Information Security Analysts
description

Ensure Image Vulnerability Scanning using Microsoft Defender for Cloud (MDC) image scanning or a third party provider (Automated)

updated
occupation
Information Security Analysts
description

Minimize user access to Azure Container Registry (ACR) (Manual)

updated
occupation
Information Security Analysts
description

Minimize cluster access to read-only for Azure Container Registry (ACR) (Manual)

updated
occupation
Information Security Analysts
description

Minimize Container Registries to only those approved (Manual)

updated
occupation
Information Security Analysts
description

Prefer using dedicated AKS Service Accounts (Manual)

updated
occupation
Information Security Analysts
description

Ensure Kubernetes Secrets are encrypted (Manual)

updated
occupation
Information Security Analysts
description

Restrict Access to the Control Plane Endpoint (Automated)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Nodes (Automated)

updated
occupation
Information Security Analysts
description

Ensure Network Policy is Enabled and set as appropriate (Automated)

updated
occupation
Information Security Analysts
description

Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)

updated
occupation
Information Security Analysts
description

Manage Kubernetes RBAC users with Azure AD (Manual)

updated
occupation
Information Security Analysts
description

Use Azure RBAC for Kubernetes Authorization (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the cluster-admin role is only used where required (Automated)

updated
occupation
Information Security Analysts
description

Avoid non-default bindings to system:authenticated (Automated)

updated
Showing 40 of 7,442 collected skills.