Item Search

NameAudit NamePluginCategory
2.3.11.9 Ensure 'Network security: Minimum session security for NTLM SSP based (including secure RPC) clients' is set to 'Require NTLMv2 session security, Require 128-bit encryption'CIS Microsoft Windows 8.1 v2.4.1 L1Windows

CONFIGURATION MANAGEMENT

5.7.3 Apply Security Context to Your Pods and ContainersCIS Kubernetes v1.20 Benchmark v1.0.1 L2 MasterUnix

CONFIGURATION MANAGEMENT

18.9.25.1 (L1) Ensure 'EMET 5.52' or higher is installedCIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.3.1Windows

SYSTEM AND INFORMATION INTEGRITY

18.9.25.1 (L1) Ensure 'EMET 5.52' or higher is installedCIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

SYSTEM AND INFORMATION INTEGRITY

49.17 Ensure 'Network access: Restrict anonymous access to Named Pipes and Shares' is set to 'Enabled'CIS Microsoft Intune for Windows 10 v5.0.0 L1Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows 11 v24H2 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows 10 1809 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows 10 v2004 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows 10 v21H2 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 1903 DC v1.19.9Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 2025 MS v2506 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server v20H2 DC v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows 10 v22H2 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 2019 DC v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 2025 DC v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

CIS_Microsoft_Intune_for_Windows_10_v5.0.0_BL.audit from CIS Microsoft Intune for Windows 10 v5.0.0CIS Microsoft Intune for Windows 10 v5.0.0 BLWindows
CIS_Microsoft_Intune_for_Windows_10_v5.0.0_NG.audit from CIS Microsoft Intune for Windows 10 v5.0.0CIS Microsoft Intune for Windows 10 v5.0.0 NGWindows
CIS_Microsoft_Intune_for_Windows_11_v5.0.0_BL.audit from CIS Microsoft Intune for Windows 11 v5.0.0CIS Microsoft Intune for Windows 11 v5.0.0 BLWindows
CIS_Microsoft_Windows_10_Enterprise_v5.0.0_L2.audit from CIS Microsoft Windows 10 Enterprise v5.0.0CIS Microsoft Windows 10 Enterprise v5.0.0 L2Windows
CIS_Microsoft_Windows_11_Enterprise_v5.1.0_L1.audit from CIS Microsoft Windows 11 Enterprise v5.1.0CIS Microsoft Windows 11 Enterprise v5.1.0 L1Windows
CIS_Microsoft_Windows_11_Enterprise_v5.1.0_L2.audit from CIS Microsoft Windows 11 Enterprise v5.1.0CIS Microsoft Windows 11 Enterprise v5.1.0 L2Windows
CIS_Microsoft_Windows_Server_2016_STIG_v4.0.0_DC_CAT_III.audit from CIS Microsoft Windows Server 2016 STIG v4.0.0CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIIWindows
CIS_Microsoft_Windows_Server_2016_STIG_v4.0.0_MS_CAT_I.audit from CIS Microsoft Windows Server 2016 STIG v4.0.0CIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT IWindows
CIS_Microsoft_Windows_Server_2016_v4.0.0_L1_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v4.0.0CIS Microsoft Windows Server 2016 v4.0.0 L1 MSWindows
CIS_Microsoft_Windows_Server_2016_v4.0.0_L2_DC.audit from CIS Microsoft Windows Server 2016 Benchmark v4.0.0CIS Microsoft Windows Server 2016 v4.0.0 L2 DCWindows
CIS_Microsoft_Windows_Server_2016_v4.0.0_L2_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v4.0.0CIS Microsoft Windows Server 2016 v4.0.0 L2 MSWindows
CIS_Microsoft_Windows_Server_2016_v4.0.0_NG_DC.audit from CIS Microsoft Windows Server 2016 Benchmark v4.0.0CIS Microsoft Windows Server 2016 v4.0.0 NG DCWindows
CIS_Microsoft_Windows_Server_2016_v4.0.0_NG_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v4.0.0CIS Microsoft Windows Server 2016 v4.0.0 NG MSWindows
CIS_Microsoft_Windows_Server_2019_STIG_v4.0.0_DC_CAT_III.audit from CIS Microsoft Windows Server 2019 STIG v4.0.0CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT IIIWindows
CIS_Microsoft_Windows_Server_2019_STIG_v4.0.0_MS_CAT_II.audit from CIS Microsoft Windows Server 2019 STIG v4.0.0CIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT IIWindows
CIS_Microsoft_Windows_Server_2022_STIG_v3.0.0_DC_CAT_II.audit from CIS Microsoft Windows Server 2022 STIG v3.0.0CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows
CIS_Microsoft_Windows_Server_2022_STIG_v3.0.0_DC_CAT_III.audit from CIS Microsoft Windows Server 2022 STIG v3.0.0CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIIWindows
CIS_Microsoft_Windows_Server_2022_STIG_v3.0.0_MS_CAT_I.audit from CIS Microsoft Windows Server 2022 STIG v3.0.0CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT IWindows
CIS_Microsoft_Windows_Server_2022_STIG_v3.0.0_MS_CAT_II.audit from CIS Microsoft Windows Server 2022 STIG v3.0.0CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT IIWindows
CIS_MS_Windows_7_v3.2.0_Level_1_Bitlocker.audit from CIS Microsoft Windows 7 Workstation Benchmark v3.2.0CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows
CIS_MS_Windows_8.1_v2.4.1_Level_1_Bitlocker.audit from CIS Microsoft Windows 8.1 Workstation Benchmark v2.4.1CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows
Network access: Remotely accessible registry pathsMSCT Windows Server 2012 R2 DC v1.0.0Windows

ACCESS CONTROL

WN10-00-000150 - Structured Exception Handling Overwrite Protection (SEHOP) must be enabled.DISA Microsoft Windows 10 STIG v3r6Windows

SYSTEM AND INFORMATION INTEGRITY

WN10-CC-000039 - Run as different user must be removed from context menus.DISA Microsoft Windows 10 STIG v3r6Windows

CONFIGURATION MANAGEMENT

WN12-RG-000003-MS - Local administrator accounts must have their privileged token filtered to prevent elevated privileges from being used over the network on domain systems.DISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN16-MS-000120 - Windows Server 2016 must be running Credential Guard on domain-joined member servers.DISA Microsoft Windows Server 2016 STIG v2r10Windows

CONFIGURATION MANAGEMENT

WN19-MS-000140 - Windows Server 2019 must be running Credential Guard on domain-joined member servers.DISA Microsoft Windows Server 2019 STIG v3r8Windows

CONFIGURATION MANAGEMENT

WN22-MS-000020 - Windows Server 2022 local administrator accounts must have their privileged token filtered to prevent elevated privileges from being used over the network on domain-joined member servers.DISA Microsoft Windows Server 2022 STIG v2r8Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN25-00-000390 - Windows Server 2025 must have the Server Message Block (SMB) v1 protocol disabled on the SMB server.DISA Microsoft Windows Server 2025 STIG v1r1Windows

CONFIGURATION MANAGEMENT

WN25-MS-000020 - Windows Server 2025 local administrator accounts must have their privileged token filtered to prevent elevated privileges from being used over the network on domain-joined member servers.DISA Microsoft Windows Server 2025 STIG v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN25-MS-000140 - Windows Server 2025 must be running Credential Guard on domain-joined member servers.DISA Microsoft Windows Server 2025 STIG v1r1Windows

CONFIGURATION MANAGEMENT