Skip to main content

Skills in this repository

CyberStrikeus/CyberStrike - Page 82

SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.

CyberStrikeus/CyberStrike

Showing 40 of 7,442 collected skills.

occupation
Information Security Analysts
description

Minimize access to create pods (Manual)

updated
occupation
Information Security Analysts
description

Ensure that default service accounts are not actively used (Manual)

updated
occupation
Information Security Analysts
description

Ensure that Service Account Tokens are only mounted where necessary (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of privileged containers (Manual)

updated
occupation
Information Security Analysts
description

Minimize access to privileged Security Context Constraints (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host process ID namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host IPC namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers wishing to share the host network namespace (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers with allowPrivilegeEscalation (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of root containers (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers with the NET_RAW capability (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers with added capabilities (Manual)

updated
occupation
Information Security Analysts
description

Minimize the admission of containers with capabilities assigned (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the CNI in use supports Network Policies (Manual)

updated
occupation
Information Security Analysts
description

Ensure that all Namespaces have Network Policies defined (Manual)

updated
occupation
Information Security Analysts
description

Prefer using secrets as files over secrets as environment variables (Manual)

updated
occupation
Information Security Analysts
description

Consider external secret storage (Manual)

updated
occupation
Information Security Analysts
description

Configure Image Provenance using image controller configuration parameters (Manual)

updated
occupation
Information Security Analysts
description

Create administrative boundaries between resources using namespaces (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the seccomp profile is set to docker/default in your pod definitions (Manual)

updated
occupation
Information Security Analysts
description

Apply Security Context to Your Pods and Containers (Manual)

updated
occupation
Information Security Analysts
description

The default namespace should not be used (Manual)

updated
occupation
Information Security Analysts
description

Restrict GPU and USB pass through to approved devices (Manual)

updated
occupation
Information Security Analysts
description

Restrict namespace administrator access to migration tools (Manual)

updated
occupation
Information Security Analysts
description

Restrict exec access to the pods (Manual)

updated
occupation
Information Security Analysts
description

Restrict VNC access to cluster workloads (Manual)

updated
occupation
Information Security Analysts
description

Restrict access to create and modify the Virtual Machine Cluster Instance and Preference Types (Manual)

updated
occupation
Information Security Analysts
description

Restrict update access to the CDI CR (Manual)

updated
occupation
Information Security Analysts
description

Enable nonRoot feature gate in OCPvirt prior to 4.18 (Automated)

updated
occupation
Information Security Analysts
description

Disable persistentReservations feature gate (Automated)

updated
occupation
Information Security Analysts
description

Disable downwardMetrics feature gate (Automated)

updated
occupation
Information Security Analysts
description

Enforce the use of trusted registries using TLS (Automated)

updated
occupation
Information Security Analysts
description

Restrict patching operations in the annotations for Hyperconverged (Manual)

updated
occupation
Information Security Analysts
description

Ensure KSM is disabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure kubevirt seccomp profile file permission is set to 700 or more restrictive (Automated)

updated
occupation
Information Security Analysts
description

Ensure kubevirt cache directory permission is set to 755 or more restrictive (Automated)

updated
occupation
Information Security Analysts
description

Restrict pass through of GPUs and Host devices to the Virtual Machine (Manual)

updated
occupation
Information Security Analysts
description

Disable overcommitting guest memory (Manual)

updated
occupation
Information Security Analysts
description

Restrict access to cross datavolumes cloning (Manual)

updated
occupation
Information Security Analysts
description

Disable Shareable disks (Automated)

updated
Showing 40 of 7,442 collected skills.