🦚 Peacock Unified

🔗 API Bindings

API → UI component mappings · 90,813 documents

IDDocumentSource
40aa2162f8cffac9SCA Check 15859: Ensure 'Disable all apps from Microsoft Store' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564']…wazuh-sca
1eaaa46acafb4d7cSCA Check 15861: Ensure 'Turn off Automatic Download and Install of updates' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007']…wazuh-sca
af2b582cce6d839aSCA Check 15862: Ensure 'Turn off the offer to update to the latest version of Windows' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0001', 'TA0011']…wazuh-sca
85560f4b89eb0f43SCA Check 15863: Ensure 'Turn off the Store application' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This…wazuh-sca
acc599c2a50c987fSCA Check 15864: Ensure 'Allow widgets' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This policy setting…wazuh-sca
b1048eda5aac12b3SCA Check 15865: Ensure 'Configure Windows Defender SmartScreen' is set to 'Enabled: Warn and prevent bypass'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0002',…wazuh-sca
c19c980ff35ed367SCA Check 15868: Ensure 'Enables or disables Windows Game Recording and Broadcasting' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005']…wazuh-sca
ae0d0f5d161488abSCA Check 15869: Ensure 'Allow suggested apps in Windows Ink Workspace' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0001', 'TA0011'] Techniques:…wazuh-sca
82cfb62595c8f613SCA Check 15969: Ensure 'Allow Windows Ink Workspace' is set to 'Enabled: On, but disallow access above lock' OR 'Enabled: Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0…wazuh-sca
94972bed93280ff1SCA Check 15871: Ensure 'Allow user control over installs' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0007'] Techniques: ['T1595', 'T1046',…wazuh-sca
f8125039ec31c9cbSCA Check 15872: Ensure 'Always install with elevated privileges' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:…wazuh-sca
76e6119636adb21fSCA Check 15873: Ensure 'Prevent Internet Explorer security prompt for Windows Installer scripts' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics:…wazuh-sca
ead05ff972681a08SCA Check 15874: Ensure 'Sign-in and lock last interactive user automatically after a restart' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0006',…wazuh-sca
6650d7c5ba618991SCA Check 15875: Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005', 'TA0006', 'TA0007'] Techniques:…wazuh-sca
81d035145772baf3SCA Check 15970: Ensure 'Turn on PowerShell Transcription' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005', 'TA0006', 'TA0007'] Techniques:…wazuh-sca
bd2834e6a674f22fSCA Check 15880: Ensure 'Allow Basic authentication' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0009', 'TA0010'] Techniques: ['T1005', 'T1025',…wazuh-sca
c922a80da51847b5SCA Check 15882: Ensure 'Allow unencrypted traffic' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0009', 'TA0010'] Techniques: ['T1005', 'T1025',…wazuh-sca
9492b76eae278a3fSCA Check 15879: Ensure 'Disallow Digest authentication' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0009', 'TA0010'] Techniques: ['T1005', 'T1025',…wazuh-sca
b0c6a6fe1f584d15SCA Check 15881: Ensure 'Allow remote server management through WinRM' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036',…wazuh-sca
0938cf05c5be1406SCA Check 15883: Ensure 'Disallow WinRM from storing RunAs credentials' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0004', 'TA0005'] Techniques:…wazuh-sca
c08aafbc8bad728dSCA Check 15884: Ensure 'Allow Remote Shell Access' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This policy…wazuh-sca
9fc2cbbe24606c01SCA Check 15885: Ensure 'Allow clipboard sharing with Windows Sandbox' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036',…wazuh-sca
67331c76e1e0839cSCA Check 15886: Ensure 'Allow networking in Windows Sandbox' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564']…wazuh-sca
76b3361bc9ffdfe5SCA Check 15887: Ensure 'Prevent users from modifying settings' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0002', 'TA0005'] Techniques: ['T1562',…wazuh-sca
6db14b21f047dd18SCA Check 15888: Ensure 'No auto-restart with logged on users for scheduled automatic updates installations' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0…wazuh-sca
8a1473ab2868d4c7SCA Check 15889: Ensure 'Configure Automatic Updates' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007'] Techniques: ['T1595', 'T1190',…wazuh-sca
ca362ee5459f1775SCA Check 15890: Ensure 'Configure Automatic Updates: Scheduled install day' is set to '0 - Every day'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007']…wazuh-sca
426b30e4f1c07661SCA Check 15971: Ensure 'Remove access to “Pause updates” feature' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007'] Techniques:…wazuh-sca
eeacc678dbb4b56bSCA Check 15892: Ensure 'Manage preview builds' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This policy…wazuh-sca
13a067af6b3bb86cSCA Check 15893: Ensure 'Select when Preview Builds and Feature Updates are received' is set to 'Enabled: 180 or more days'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics:…wazuh-sca
5a2b1de0449d713fSCA Check 15894: Ensure 'Select when Quality Updates are received' is set to 'Enabled: 0 days'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007'] Techniques:…wazuh-sca
967f37a21293deb5SCA Check 15000: Ensure 'Enforce password history' is set to '24 or more password(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:…wazuh-sca
23b198299ac257a9SCA Check 15001: Ensure 'Maximum password age' is set to '365 or fewer days, but not 0'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:…wazuh-sca
738138bdd2b9c227SCA Check 15002: Ensure 'Minimum password age' is set to '1 or more day(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques: ['T1078', 'T1098',…wazuh-sca
9de86a7f5e78796aSCA Check 15003: Ensure 'Minimum password length' is set to '14 or more character(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:…wazuh-sca
ebf1e7aa46c5976bSCA Check 15004: Ensure 'Account lockout duration' is set to '15 or more minute(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques: ['T1078',…wazuh-sca
b297e91024a7a1e9SCA Check 15005: Ensure 'Account lockout threshold' is set to '5 or fewer invalid logon attempt(s), but not 0'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006',…wazuh-sca
22414125e816c8daSCA Check 15006: Ensure 'Reset account lockout counter after' is set to '15 or more minute(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:…wazuh-sca
75fe834205c9e1faSCA Check 15007: Ensure 'Accounts: Block Microsoft accounts' is set to 'Users can't add or log on with Microsoft accounts'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics:…wazuh-sca
7141426fa62ed447SCA Check 15008: Ensure 'Accounts: Guest account status' is set to 'Disabled' (MS only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005'] Techniques: ['T1036',…wazuh-sca
44921df1a4214ba2SCA Check 15009: Ensure 'Accounts: Limit local account use of blank passwords to console logon only' is set to 'Enabled'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics:…wazuh-sca
35d1ae224602f2beSCA Check 15010: Configure 'Accounts: Rename administrator account'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] The built-in…wazuh-sca
15a43864f103d52dSCA Check 15011: Configure 'Accounts: Rename guest account'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] The built-in local guest…wazuh-sca
d87443e487e42978SCA Check 15012: Ensure 'Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings' is set to 'Enabled'. Policy: CIS Microsoft Windows Server…wazuh-sca
557b97b58547891bSCA Check 15013: Ensure 'Audit: Shut down system immediately if unable to log security audits' is set to 'Disabled'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005',…wazuh-sca
914969bb2d296ea3SCA Check 15014: Ensure 'Devices: Allowed to format and eject removable media' is set to 'Administrators'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0009', 'TA0010']…wazuh-sca
214e9eed459def1dSCA Check 15015: Ensure 'Devices: Prevent users from installing printer drivers' is set to 'Enabled'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0007'] Techniques:…wazuh-sca
a7c476b49aeb0190SCA Check 15016: Ensure 'Domain controller: Allow server operators to schedule tasks' is set to 'Disabled' (DC only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0007']…wazuh-sca
5784b6e124c47c08SCA Check 15017: Ensure 'Domain controller: Allow vulnerable Netlogon secure channel connections' is set to 'Not Configured' (DC Only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0…wazuh-sca
17d978301a37dd4bSCA Check 15018: Ensure 'Domain controller: LDAP server channel binding token requirements' is set to 'Always' (DC Only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics:…wazuh-sca