Skip to main content

Skills in this repository

CyberStrikeus/CyberStrike - Page 76

SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.

CyberStrikeus/CyberStrike

Showing 40 of 7,442 collected skills.

occupation
Information Security Analysts
description

Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --client-ca-file argument is set as appropriate (Automated)

updated
occupation
Information Security Analysts
description

Verify that the read only port is not used or is set to 0 (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)

updated
occupation
Information Security Analysts
description

Ensure that the --make-iptables-util-chains argument is set to true (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the kubeAPIQPS [--event-qps] argument is set to 0 or a level which ensures appropriate event capture (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Manual)

updated
occupation
Information Security Analysts
description

Ensure cluster-admin role only used where required (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to secrets (Manual)

updated
occupation
Information Security Analysts
description

Minimize wildcard use in Roles and ClusterRoles (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to create pods (Manual)

updated
occupation
Information Security Analysts
description

Ensure default service accounts not actively used (Manual)

updated
occupation
Information Security Analysts
description

Ensure Service Account Tokens only mounted where necessary (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of privileged containers (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to privileged Security Context Constraints (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of containers sharing host process ID namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of containers sharing host IPC namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of containers sharing host network namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of containers with allowPrivilegeEscalation (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of root containers (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of containers with NET_RAW capability (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of containers with added capabilities (Manual)

updated
occupation
Information Security Analysts
description

Minimize admission of containers with capabilities assigned (Manual)

updated
occupation
Information Security Analysts
description

Ensure CNI in use supports Network Policies (Manual)

updated
occupation
Information Security Analysts
description

Ensure all Namespaces have Network Policies defined (Manual)

updated
occupation
Information Security Analysts
description

Prefer using secrets as files over environment variables (Manual)

updated
occupation
Information Security Analysts
description

Consider external secret storage (Manual)

updated
occupation
Information Security Analysts
description

Configure Image Provenance using image controller config (Manual)

updated
occupation
Information Security Analysts
description

Create administrative boundaries using namespaces (Manual)

updated
occupation
Information Security Analysts
description

Ensure seccomp profile set to docker/default (Manual)

updated
occupation
Information Security Analysts
description

Apply Security Context to Your Pods and Containers (Manual)

updated
occupation
Information Security Analysts
description

The default namespace should not be used (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the API server pod specification file permissions are set to 600 or more restrictive (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the Container Network Interface file ownership is set to root:root (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the etcd data directory permissions are set to 700 or more restrictive (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the etcd data directory ownership is set to etcd:etcd (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the kubeconfig file permissions are set to 600 or more restrictive (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the kubeconfig file ownership is set to root:root (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the Scheduler kubeconfig file permissions are set to 600 or more restrictive (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the Scheduler kubeconfig file ownership is set to root:root (Manual)

updated
Showing 40 of 7,442 collected skills.