Skip to main content

Skills in this repository

CyberStrikeus/CyberStrike - Page 51

SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.

CyberStrikeus/CyberStrike

Showing 40 of 7,442 collected skills.

occupation
Information Security Analysts
description

Ensure Image Vulnerability Scanning is enabled (Automated)

updated
occupation
Information Security Analysts
description

Minimize user access to Container Image repositories (Manual)

updated
occupation
Information Security Analysts
description

Minimize cluster access to read-only for Container Image repositories (Manual)

updated
occupation
Information Security Analysts
description

Ensure only trusted container images are used (Automated)

updated
occupation
Information Security Analysts
description

Ensure GKE clusters are not running using the Compute Engine default service account (Automated)

updated
occupation
Information Security Analysts
description

Ensure Kubernetes Secrets are encrypted using keys managed in Cloud KMS (Automated)

updated
occupation
Information Security Analysts
description

Enable VPC Flow Logs and Intranode Visibility (Automated)

updated
occupation
Information Security Analysts
description

Ensure Control Plane Authorized Networks is Enabled (Manual)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Nodes (Automated)

updated
occupation
Information Security Analysts
description

Ensure use of Google-managed SSL Certificates (Automated)

updated
occupation
Information Security Analysts
description

Manage Kubernetes RBAC users with Google Groups for GKE (Manual)

updated
occupation
Information Security Analysts
description

Enable Customer-Managed Encryption Keys (CMEK) for GKE Persistent Disks (PD) (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the proxy kubeconfig file permissions are set to 644 or more restrictive (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the proxy kubeconfig file ownership is set to root:root (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the kubelet configuration file has permissions set to 644 (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the kubelet configuration file ownership is set to root:root (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the Anonymous Auth is Not Enabled Draft (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)

updated
occupation
Information Security Analysts
description

Ensure that a Client CA File is Configured (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --read-only-port is disabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --make-iptables-util-chains argument is set to true (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --rotate-certificates argument is not present or is set to true (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the cluster-admin role is only used where required (Automated)

updated
occupation
Information Security Analysts
description

Avoid non-default bindings to system:authenticated (Automated)

updated
occupation
Information Security Analysts
description

Minimize access to secrets (Automated)

updated
occupation
Information Security Analysts
description

Minimize wildcard use in Roles and ClusterRoles (Automated)

updated
occupation
Information Security Analysts
description

Ensure that default service accounts are not actively used (Automated)

updated
occupation
Information Security Analysts
description

Ensure that Service Account Tokens are only mounted where necessary (Automated)

updated
occupation
Information Security Analysts
description

Avoid use of system:masters group (Automated)

updated
occupation
Information Security Analysts
description

Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes cluster (Manual)

updated
occupation
Information Security Analysts
description

Avoid bindings to system:anonymous (Automated)

updated
occupation
Information Security Analysts
description

Avoid non-default bindings to system:unauthenticated (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the cluster enforces Pod Security Standard Baseline profile or stricter for all namespaces (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the CNI in use supports Network Policies (Manual)

updated
occupation
Information Security Analysts
description

Ensure that all Namespaces have Network Policies defined (Automated)

updated
Showing 40 of 7,442 collected skills.