Item Search

NameAudit NamePluginCategory
1.2.1.1 Ensure GPG keys are configuredCIS Red Hat Enterprise Linux 9 v2.0.0 L1 ServerUnix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.5.3 Ensure prelink is disabledCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

AUDIT AND ACCOUNTABILITY

1.5.3 Ensure prelink is not installedCIS Debian 10 Server L1 v2.0.0Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

1.5.4 Ensure prelink is not installedCIS Ubuntu Linux 24.04 LTS v1.0.0 L1 WorkstationUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

1.5.4 Ensure prelink is not installedCIS Ubuntu Linux 22.04 LTS v2.0.0 L1 WorkstationUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

1.6.3 Ensure prelink is disabledCIS Ubuntu Linux 18.04 LXD Host L1 Workstation v1.0.0Unix

AUDIT AND ACCOUNTABILITY

2.3 Enable Information Bar for Outdated PluginsCIS Mozilla Firefox 38 ESR Linux L1 v1.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

2.5 (L1) Host must only run binaries delivered via signed VIBCIS VMware ESXi 8.0 v1.2.0 L1VMware

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

2.9 Ensure VDS health check is disabledCIS VMware ESXi 6.7 v1.3.0 Level 1VMware

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

3.2 Do Not Send Cross SSL/TLS Referrer HeaderCIS Mozilla Firefox 38 ESR Linux L2 v1.0.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

3.6 Set File URI Origin PolicyCIS Mozilla Firefox 38 ESR Linux L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'AirWatch - CIS Apple iOS 14 and iPadOS 14 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.2 Ensure 'Software Update' returns 'Your software is up to date.'MobileIron - CIS Apple iOS 14 and iPadOS 14 v1.0.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.4 Ensure 'Software Update' returns 'Your software is up to date.'AirWatch - CIS Apple iPadOS 17 v1.1.0 End User Owned L1MDM

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

4.4 Ensure 'Software Update' returns 'Your software is up to date.'MobileIron - CIS Apple iPadOS 18 v1.0.0 L1 Institutionally OwnedMDM

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

5.2 Disable Scripting of Plugins by JavaScriptCIS Mozilla Firefox 38 ESR Linux L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

5.5 Disable Closing of Windows via ScriptsCIS Mozilla Firefox 38 ESR Linux L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

5.6 Ensure access to the su command is restricted - /etc/groupCIS SUSE Linux Enterprise Server 11 L1 v2.1.1Unix

ACCESS CONTROL, MEDIA PROTECTION

5.7 Ensure access to the su command is restricted - pam_wheel.soCIS CentOS 6 Server L1 v3.0.0Unix

ACCESS CONTROL

5.7 Ensure access to the su command is restricted - wheel group contains rootCIS CentOS 6 Workstation L1 v3.0.0Unix

ACCESS CONTROL

5.203 - Prohibit Network Bridge in WindowsDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

6.2 Do Not Accept Third Party CookiesCIS Mozilla Firefox 38 ESR Linux L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

7.2 Disabling Auto-Install of Add-onsCIS Mozilla Firefox 38 ESR Linux L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

DTOO123 - PowerPoint - Navigation to URL's embedded in Office products must be blocked.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforcedDISA STIG Microsoft Publisher 2016 v1r3Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforcedDISA STIG Microsoft Office Access 2016 v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforced in PowerPoint.DISA STIG Microsoft PowerPoint 2016 v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforced.DISA STIG Microsoft Outlook 2016 v2r3Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforced.DISA STIG Microsoft Project 2016 v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforced.DISA STIG Microsoft Project 2013 v1r5Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforced.DISA STIG Microsoft Excel 2016 v2r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforced.DISA STIG Microsoft Visio 2016 v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Scripted Window Security must be enforced.DISA STIG Microsoft Word 2016 v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO209 - Protection from zone elevation must be enforcedDISA STIG Microsoft Publisher 2016 v1r3Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO209 - Protection from zone elevation must be enforced in PowerPoint.DISA STIG Microsoft PowerPoint 2016 v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO209 - Protection from zone elevation must be enforced.DISA STIG Microsoft Outlook 2016 v2r3Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO209 - Protection from zone elevation must be enforced.DISA STIG Microsoft OneNote 2016 v1r2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO509 - Protection from zone elevation must be enforced in PowerPoint Viewer.DISA STIG Microsoft PowerPoint 2016 v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Ensure LDAP client is not installed - dpkgTenable Cisco Firepower Management Center OS Best Practices AuditUnix

CONFIGURATION MANAGEMENT

Ensure LDAP client is not installed - rpmTenable Cisco Firepower Management Center OS Best Practices AuditUnix

CONFIGURATION MANAGEMENT

ESXi : audit-exception-usersVMWare vSphere 6.0 Hardening GuideVMware

ACCESS CONTROL

Macro Notification Settings - vbadigsigtrustedpublishersMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0Windows

SYSTEM AND SERVICES ACQUISITION

Macro Notification Settings - vbadigsigtrustedpublishersMSCT Microsoft 365 Apps for Enterprise 2206 v1.0.0Windows

SYSTEM AND SERVICES ACQUISITION

Macro Notification Settings - vbarequiredigsigwithcodesigningekuMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Macro Notification Settings - xl4macrowarningfollowvbaMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-06-000015 - The system package management tool must cryptographically verify the authenticity of all software packages during installation.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

VCEM-67-000022 - ESX Agent Manager must set the welcome-file node to a default web page.DISA STIG VMware vSphere 6.7 EAM Tomcat v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

VM : use-vm-templatesVMWare vSphere 5.X Hardening GuideVMware

CONFIGURATION MANAGEMENT

WDNS-IA-000004 - The Windows DNS primary server must only send zone transfers to a specific list of secondary name servers.DISA Microsoft Windows 2012 Server DNS STIG v2r7Windows

IDENTIFICATION AND AUTHENTICATION

WN11-SO-000145 - Anonymous enumeration of SAM accounts must not be allowed.DISA Microsoft Windows 11 STIG v2r3Windows

CONFIGURATION MANAGEMENT