All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- Cis K8s V200 5.2.12Minimize the admission of containers which use HostPorts (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.2Minimize the admission of privileged containers (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.3Minimize the admission of containers wishing to share the host process ID namespace (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.4Minimize the admission of containers wishing to share the host IPC namespace (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.5Minimize the admission of containers wishing to share the host network namespace (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.6Minimize the admission of containers with allowPrivilegeEscalation (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.7Minimize the admission of root containers (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.8Minimize the admission of containers with the NET_RAW capability (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.2.9Minimize the admission of containers with capabilities assigned (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.3.1Ensure that the CNI in use supports Network Policies (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.3.2Ensure that all Namespaces have Network Policies defined (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.4.1Prefer using secrets as files over secrets as environment variables (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.4.2Consider external secret storage (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.5.1Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.6.1Create administrative boundaries between resources using namespaces (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.6.2Ensure that the seccomp profile is set to docker/default in your pod definitions (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.6.3Apply Security Context to Your Pods and Containers (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V200 5.6.4The default namespace should not be used (Manual)Votes: 0GitHub stars: 2,182
- Cis Oke V150 2.1.1Client certificate authentication should not be used for users (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 2.2.1Ensure access to OCI Audit service Log for OKE (Manual)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.1.1Ensure that the oke_kubelet_conf.json file permissions are set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.1.2Ensure that the proxy oke_kubelet_conf.json file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.1.3Ensure that the kubelet configuration file has permissions set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.1.4Ensure that the kubelet configuration file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.1Ensure that the --anonymous-auth argument is set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.10Ensure that the --rotate-server-certificates argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.2Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.3Ensure that the --client-ca-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.4Ensure that the --read-only-port argument is set to 0 (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.5Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.6Ensure that the --make-iptables-util-chains argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.7Ensure that the --event-qps argument is set to 0 or a level which ensures appropriate event capture (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.8Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 3.2.9Ensure that the --rotate-certificates argument is not set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.1.1Ensure that the cluster-admin role is only used where required (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.1.2Minimize access to secrets (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.1.3Minimize wildcard use in Roles and ClusterRoles (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.1.4Minimize access to create pods (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.1.5Ensure that default service accounts are not actively used (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.1.6Ensure that Service Account Tokens are only mounted where necessary (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.2.1Minimize the admission of privileged containers (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.2.2Minimize the admission of containers wishing to share the host process ID namespace (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.2.3Minimize the admission of containers wishing to share the host IPC namespace (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.2.4Minimize the admission of containers wishing to share the host network namespace (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.2.5Minimize the admission of containers with allowPrivilegeEscalation (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.3.1Ensure latest CNI version is used (Manual)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.3.2Ensure that all Namespaces have Network Policies defined (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.4.1Prefer using secrets as files over secrets as environment variables (Manual)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.4.2Consider external secret storage (Manual)Votes: 0GitHub stars: 2,182
- Cis Oke V150 4.5.1Create administrative boundaries between resources using namespaces (Manual)Votes: 0GitHub stars: 2,182