Verify that packets with un-routable source addresses are logged for investigation
Quellsprache: Englisch
Menü
Skills in diesem Repository
SkillsMP hat 7.442 Skills aus CyberStrikeus/CyberStrike gesammelt. Öffne einen Skill, um Quelle und Details zu prüfen.
CyberStrikeus/CyberStrikeEs werden 40 von 7.442 gesammelten Skills angezeigt.
Verify that packets with un-routable source addresses are logged for investigation
Quellsprache: Englisch
Verify that TCP SYN Cookies are enabled to protect against SYN flood attacks
Quellsprache: Englisch
Verify that IPv6 is disabled if not required to reduce the attack surface
Quellsprache: Englisch
Verify that TCP Wrappers is installed for host-based access control
Quellsprache: Englisch
Verify that /etc/hosts.allow is configured to permit authorized network access
Quellsprache: Englisch
Verify that /etc/hosts.deny is configured to deny all unauthorized network access
Quellsprache: Englisch
Verify that iptables is installed for firewall management and configuration
Quellsprache: Englisch
Verify that default deny firewall policy is configured for INPUT, OUTPUT, and FORWARD chains
Quellsprache: Englisch
Verify that loopback interface accepts traffic and other interfaces deny loopback network traffic
Quellsprache: Englisch
Verify that wireless interfaces are disabled to reduce the attack surface
Quellsprache: Englisch
Enable the auditd daemon to record system events for security monitoring
Quellsprache: Englisch
Enable the rsyslog service to ensure system logging is active
Quellsprache: Englisch
Configure rsyslog to capture appropriate logging for all facilities
Quellsprache: Englisch
Enable the syslog-ng service to ensure system logging is active
Quellsprache: Englisch
Configure syslog-ng to capture appropriate logging for all facilities
Quellsprache: Englisch
Configure logrotate to ensure logs are rotated regularly to prevent disk exhaustion
Quellsprache: Englisch
Verify the cron daemon is enabled to execute scheduled batch jobs on the system
Quellsprache: Englisch
Verify SSH access is limited using AllowUsers, AllowGroups, DenyUsers, or DenyGroups directives
Quellsprache: Englisch
Verify SSH is configured to use Protocol version 2 only
Quellsprache: Englisch
Verify SSH X11 forwarding is disabled to prevent remote graphic connection tunneling
Quellsprache: Englisch
Verify SSH IgnoreRhosts is set to yes to prevent .rhosts-based authentication
Quellsprache: Englisch
Verify SSH PermitRootLogin is set to no to prevent direct root login over SSH
Quellsprache: Englisch
Verify PAM is configured to remember at least 5 previous passwords to prevent reuse
Quellsprache: Englisch
Verify system accounts have non-login shells and are locked to prevent interactive access
Quellsprache: Englisch
Find and remediate world writable files across all local filesystems
Quellsprache: Englisch
Identify and review all SUID executables to ensure they are legitimate
Quellsprache: Englisch
Identify and review all SGID executables to ensure they are legitimate
Quellsprache: Englisch
Verify all accounts in /etc/shadow have a password or are locked
Quellsprache: Englisch
Verify no users have .forward files in their home directories
Quellsprache: Englisch
Verify no users have .netrc files in their home directories
Quellsprache: Englisch
Verify no users have .rhosts files in their home directories
Quellsprache: Englisch
Verify no duplicate User IDs exist in /etc/passwd
Quellsprache: Englisch
Verify no duplicate Group IDs exist in /etc/group
Quellsprache: Englisch
Verify no duplicate user names exist in /etc/passwd
Quellsprache: Englisch
Verify the shadow group has no users assigned to it
Quellsprache: Englisch
Verify that only the root account has UID 0
Quellsprache: Englisch
Verify root PATH does not contain writable or non-root-owned directories
Quellsprache: Englisch
Ensure mounting of cramfs filesystems is disabled
Quellsprache: Englisch
Ensure mounting of freevxfs filesystems is disabled
Quellsprache: Englisch
Ensure mounting of jffs2 filesystems is disabled
Quellsprache: Englisch