Item Search

NameAudit NamePluginCategory
2.3.17.1 Ensure 'User Account Control: Admin Approval Mode for the Built-in Administrator account' is set to 'Enabled'CIS Microsoft Windows Server 2022 v5.0.0 L1 DCWindows

ACCESS CONTROL

2.3.17.1 Ensure 'User Account Control: Admin Approval Mode for the Built-in Administrator account' is set to 'Enabled'CIS Microsoft Windows Server 2019 v5.0.0 L1 MSWindows

ACCESS CONTROL

2.4 Do Not Reuse UsernamesCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

ACCESS CONTROL

2.4 Do Not Reuse UsernamesCIS MariaDB 10.11 v1.0.0 L1 MariaDB RDBMS MySQLDBMySQLDB

ACCESS CONTROL

2.4 Do Not Reuse UsernamesCIS MySQL 5.6 Enterprise Database L1 v2.0.0MySQLDB

ACCESS CONTROL

2.4 Do Not Reuse UsernamesCIS MySQL 5.7 Community Database L1 v2.0.0MySQLDB

ACCESS CONTROL

2.4 Do Not Reuse UsernamesCIS MySQL 5.7 Enterprise Database L1 v2.0.0MySQLDB

ACCESS CONTROL

2.4 Do Not Reuse UsernamesCIS MySQL 5.6 Community Database L1 v2.0.0MySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Community Server 8.0 v1.2.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Community Server 8.0 v1.2.0 L1 MySQL RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Community Server 8.4 v1.1.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Enterprise Edition 8.4 v1.1.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Enterprise Edition 8.0 v1.5.0 L1 MySQL RDBMS MySQLDBMySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Community Server 8.4 v1.1.0 L1 MySQL RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Enterprise Edition 8.0 v1.5.0 L1 MySQL RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL

2.5 Do Not Reuse UsernamesCIS Oracle MySQL Enterprise Edition 8.4 v1.1.0 L1 MySQL RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 4 L1 OS Linux v1.0.0Unix

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 7 v1.2.0 L1 UnixUnix

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 8 v1.0.0 L1 WindowsWindows

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 7 v1.2.0 L1 WindowsWindows

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 4 L1 OS Windows v1.0.0Windows

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 5 L1 OS Windows v1.2.0Windows

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 6 v1.2.0 L1 MongoDBUnix

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 6 v1.2.0 L1 MongoDBWindows

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 8 v1.0.0 L1 UnixUnix

ACCESS CONTROL

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service accountCIS MongoDB 5 L1 OS Linux v1.2.0Unix

ACCESS CONTROL

5.1.20 Ensure sshd PermitRootLogin is disabledCIS AlmaLinux OS 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.1.20 Ensure sshd PermitRootLogin is disabledCIS Red Hat Enterprise Linux 10 v1.0.1 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.1.20 Ensure sshd PermitRootLogin is disabledCIS AlmaLinux OS 10 v1.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.1.20 Ensure sshd PermitRootLogin is disabledCIS Red Hat Enterprise Linux 10 v1.0.1 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.1.20 Ensure sshd PermitRootLogin is disabledCIS Oracle Linux 10 v1.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.1.20 Ensure sshd PermitRootLogin is disabledCIS Oracle Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS Red Hat Enterprise Linux 8 v4.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS AlmaLinux OS 8 v4.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS Rocky Linux 8 v3.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS Oracle Linux 8 v4.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS AlmaLinux OS 8 v4.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS Oracle Linux 8 v4.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS Red Hat Enterprise Linux 8 v4.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.1.22 Ensure sshd PermitRootLogin is disabledCIS Rocky Linux 8 v3.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.2.1 Ensure GKE clusters are not running using the Compute Engine default service accountCIS Google Kubernetes Engine GKE v1.9.0 L1 GCPGCP

IDENTIFICATION AND AUTHENTICATION

5.2.1 Ensure GKE clusters are not running using the Compute Engine default service accountCIS Google Kubernetes Engine GKE Autopilot v1.3.0 L2GCP

IDENTIFICATION AND AUTHENTICATION

5.2.2 Prefer using dedicated GCP Service Accounts and Workload IdentityCIS Google Kubernetes Engine GKE v1.9.0 L2 GCPGCP

IDENTIFICATION AND AUTHENTICATION

6.4 Use parental controls for systems that are not centrally managedCIS Apple macOS 10.13 L2 v1.1.0Unix

ACCESS CONTROL

18.4.1 Ensure 'Apply UAC restrictions to local accounts on network logons' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v5.0.1 L1Windows

ACCESS CONTROL

18.4.1 Ensure 'Apply UAC restrictions to local accounts on network logons' is set to 'Enabled' (MS only)CIS Microsoft Windows Server 2022 v5.0.0 L1 MSWindows

ACCESS CONTROL

18.4.1 Ensure 'Apply UAC restrictions to local accounts on network logons' is set to 'Enabled' (MS only)CIS Microsoft Windows Server 2025 v2.0.0 L1 MSWindows

ACCESS CONTROL

18.10.82.2 Ensure 'Always install with elevated privileges' is set to 'Disabled'CIS Microsoft Windows Server 2022 v5.0.0 L1 DCWindows

ACCESS CONTROL

18.10.82.2 Ensure 'Always install with elevated privileges' is set to 'Disabled'CIS Microsoft Windows Server 2025 v2.0.0 L1 DCWindows

ACCESS CONTROL

18.10.82.2 Ensure 'Always install with elevated privileges' is set to 'Disabled'CIS Microsoft Windows 11 Stand-alone v5.0.0 L1Windows

ACCESS CONTROL