All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- Cis Oke V180 5.4.1Restrict Access to the Control Plane Endpoint (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V180 5.4.2Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V180 5.4.3Ensure clusters are created with Private Nodes (Automated)Votes: 0GitHub stars: 2,182
- Cis Oke V180 5.4.4Ensure Network Policy is Enabled and set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis Oke V180 5.4.5Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)Votes: 0GitHub stars: 2,182
- Cis Oke V180 5.5.1Access Control and Container Engine for Kubernetes (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 2.1.1Enable audit Logs (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.1.1Ensure that the kubeconfig file permissions are set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.1.2Ensure that the kubelet kubeconfig file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.1.3Ensure that the azure.json file has permissions set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.1.4Ensure that the azure.json file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.1Ensure that the --anonymous-auth argument is set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.2Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.3Ensure that the --client-ca-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.4Ensure that the --read-only-port is secured (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.5Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.6Ensure that the --make-iptables-util-chains argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.7Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.8Ensure that the --rotate-certificates argument is not set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 3.2.9Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.1Ensure that the cluster-admin role is only used where required (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.10Minimize access to the approval sub-resource of certificatesigningrequests objects (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.11Minimize access to webhook configuration objects (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.12Minimize access to the service account token creation (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.2Minimize access to secrets (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.3Minimize wildcard use in Roles and ClusterRoles (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.4Minimize access to create pods (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.5Ensure that default service accounts are not actively used (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.6Ensure Service Account Tokens are only mounted where necessary (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.7Limit use of Bind, Impersonate and Escalate permissions (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.8Minimize access to create persistent volumes (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.1.9Minimize access to the proxy sub-resource of nodes (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.2.1Minimize the admission of privileged containers (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.2.2Minimize the admission of containers wishing to share the host process ID namespace (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.2.3Minimize the admission of containers wishing to share the host IPC namespace (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.2.4Minimize the admission of containers wishing to share the host network namespace (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.2.5Minimize the admission of containers with allowPrivilegeEscalation (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.4.1Ensure latest CNI version is used (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.4.2Ensure all Namespaces have Network Policies defined (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.5.1Prefer using secrets as files over secrets as environment variables (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.5.2Consider external secret storage (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.6.1Create administrative boundaries between resources using namespaces (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.6.2Apply Security Context to Your Pods and Containers (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 4.6.3The default namespace should not be used (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 5.1.1Ensure Image Vulnerability Scanning using Microsoft Defender for Cloud (MDC) image scanning or a third party provider (Automated)Votes: 0GitHub stars: 2,182
- Cis Aks V180 5.1.2Minimize user access to Azure Container Registry (ACR) (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 5.1.3Minimize cluster access to read-only for Azure Container Registry (ACR) (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 5.1.4Minimize Container Registries to only those approved (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 5.2.1Prefer using dedicated AKS Service Accounts (Manual)Votes: 0GitHub stars: 2,182
- Cis Aks V180 5.3.1Ensure Kubernetes Secrets are encrypted (Manual)Votes: 0GitHub stars: 2,182