System32
Sysmon
Events
Compliance
Validator
TLS/SSL
GeoIP
Tools
Security Technical Implementation Guides (STIGs)
Product
macOS 26 - Tahoe
(160)
Severity
Medium
(145)
High
(13)
Low
(2)
SRG
SRG-OS-000095-GPOS-00049
(47)
SRG-OS-000057-GPOS-00027
(16)
SRG-OS-000080-GPOS-00048
(13)
SRG-OS-000163-GPOS-00072
(7)
SRG-OS-000205-GPOS-00083
(5)
SRG-OS-000028-GPOS-00009
(4)
SRG-OS-000104-GPOS-00051
(4)
SRG-OS-000023-GPOS-00006
(3)
SRG-OS-000105-GPOS-00052
(3)
SRG-OS-000355-GPOS-00143
(3)
SRG-OS-000480-GPOS-00227
(3)
SRG-OS-000021-GPOS-00005
(2)
SRG-OS-000031-GPOS-00012
(2)
SRG-OS-000033-GPOS-00014
(2)
SRG-OS-000067-GPOS-00035
(2)
SRG-OS-000079-GPOS-00047
(2)
SRG-OS-000341-GPOS-00132
(2)
SRG-OS-000365-GPOS-00152
(2)
SRG-OS-000366-GPOS-00153
(2)
SRG-OS-000373-GPOS-00156
(2)
SRG-OS-000002-GPOS-00002
(1)
SRG-OS-000004-GPOS-00004
(1)
SRG-OS-000029-GPOS-00010
(1)
SRG-OS-000030-GPOS-00011
(1)
SRG-OS-000032-GPOS-00013
(1)
SRG-OS-000037-GPOS-00015
(1)
SRG-OS-000046-GPOS-00022
(1)
SRG-OS-000051-GPOS-00024
(1)
SRG-OS-000064-GPOS-00033
(1)
SRG-OS-000066-GPOS-00034
(1)
SRG-OS-000068-GPOS-00036
(1)
SRG-OS-000069-GPOS-00037
(1)
SRG-OS-000071-GPOS-00039
(1)
SRG-OS-000074-GPOS-00042
(1)
SRG-OS-000075-GPOS-00043
(1)
SRG-OS-000076-GPOS-00044
(1)
SRG-OS-000078-GPOS-00046
(1)
SRG-OS-000109-GPOS-00056
(1)
SRG-OS-000118-GPOS-00060
(1)
SRG-OS-000185-GPOS-00079
(1)
SRG-OS-000266-GPOS-00101
(1)
SRG-OS-000279-GPOS-00109
(1)
SRG-OS-000324-GPOS-00125
(1)
SRG-OS-000344-GPOS-00135
(1)
SRG-OS-000362-GPOS-00149
(1)
SRG-OS-000364-GPOS-00151
(1)
SRG-OS-000378-GPOS-00163
(1)
SRG-OS-000403-GPOS-00182
(1)
SRG-OS-000423-GPOS-00187
(1)
SRG-OS-000439-GPOS-00195
(1)
SRG-OS-000445-GPOS-00199
(1)
SRG-OS-000480-GPOS-00230
(1)
SRG-OS-000480-GPOS-00232
(1)
SRG-OS-000830-GPOS-00300
(1)
CCIs
CCI-000381
(47)
CCI-000162
(16)
CCI-000213
(13)
CCI-001133
(7)
CCI-004066
(6)
CCI-000366
(5)
CCI-001312
(5)
CCI-000056
(4)
CCI-000764
(4)
CCI-000048
(3)
CCI-000765
(3)
CCI-004923
(3)
CCI-000044
(2)
CCI-000057
(2)
CCI-000060
(2)
CCI-000068
(2)
CCI-000186
(2)
CCI-000206
(2)
CCI-001849
(2)
CCI-002038
(2)
CCI-003938
(2)
CCI-003992
(2)
CCI-000016
(1)
CCI-000018
(1)
CCI-000067
(1)
CCI-000130
(1)
CCI-000139
(1)
CCI-000154
(1)
CCI-000172
(1)
CCI-000185
(1)
CCI-000187
(1)
CCI-000197
(1)
CCI-001199
(1)
CCI-001813
(1)
CCI-001858
(1)
CCI-001958
(1)
CCI-002235
(1)
CCI-002361
(1)
CCI-002418
(1)
CCI-002470
(1)
CCI-002605
(1)
CCI-002696
(1)
CCI-003376
(1)
CCI-003627
(1)
CCI-003980
(1)
CCI-004045
(1)
STIG IDs
APPL-26-000001
(1)
APPL-26-000002
(1)
APPL-26-000003
(1)
APPL-26-000005
(1)
APPL-26-000007
(1)
APPL-26-000009
(1)
APPL-26-000012
(1)
APPL-26-000014
(1)
APPL-26-000022
(1)
APPL-26-000023
(1)
APPL-26-000024
(1)
APPL-26-000025
(1)
APPL-26-000030
(1)
APPL-26-000031
(1)
APPL-26-000033
(1)
APPL-26-000051
(1)
APPL-26-000052
(1)
APPL-26-000053
(1)
APPL-26-000054
(1)
APPL-26-000057
(1)
APPL-26-000060
(1)
APPL-26-000070
(1)
APPL-26-000090
(1)
APPL-26-000100
(1)
APPL-26-000110
(1)
APPL-26-000120
(1)
APPL-26-000130
(1)
APPL-26-000140
(1)
APPL-26-000160
(1)
APPL-26-000170
(1)
APPL-26-000180
(1)
APPL-26-000190
(1)
APPL-26-001001
(1)
APPL-26-001002
(1)
APPL-26-001003
(1)
APPL-26-001012
(1)
APPL-26-001013
(1)
APPL-26-001014
(1)
APPL-26-001015
(1)
APPL-26-001016
(1)
APPL-26-001017
(1)
APPL-26-001020
(1)
APPL-26-001021
(1)
APPL-26-001022
(1)
APPL-26-001023
(1)
APPL-26-001024
(1)
APPL-26-001029
(1)
APPL-26-001030
(1)
APPL-26-001031
(1)
APPL-26-001044
(1)
APPL-26-001060
(1)
APPL-26-001100
(1)
APPL-26-001110
(1)
APPL-26-001120
(1)
APPL-26-001130
(1)
APPL-26-001140
(1)
APPL-26-001150
(1)
APPL-26-002001
(1)
APPL-26-002003
(1)
APPL-26-002004
(1)
APPL-26-002005
(1)
APPL-26-002006
(1)
APPL-26-002007
(1)
APPL-26-002008
(1)
APPL-26-002009
(1)
APPL-26-002010
(1)
APPL-26-002012
(1)
APPL-26-002013
(1)
APPL-26-002014
(1)
APPL-26-002015
(1)
APPL-26-002016
(1)
APPL-26-002017
(1)
APPL-26-002020
(1)
APPL-26-002021
(1)
APPL-26-002022
(1)
APPL-26-002023
(1)
APPL-26-002024
(1)
APPL-26-002035
(1)
APPL-26-002036
(1)
APPL-26-002037
(1)
APPL-26-002038
(1)
APPL-26-002039
(1)
APPL-26-002040
(1)
APPL-26-002041
(1)
APPL-26-002042
(1)
APPL-26-002043
(1)
APPL-26-002050
(1)
APPL-26-002052
(1)
APPL-26-002053
(1)
APPL-26-002060
(1)
APPL-26-002062
(1)
APPL-26-002063
(1)
APPL-26-002064
(1)
APPL-26-002066
(1)
APPL-26-002068
(1)
APPL-26-002069
(1)
APPL-26-002080
(1)
APPL-26-002090
(1)
APPL-26-002100
(1)
APPL-26-002110
(1)
Rule IDs
SV-277028r1148536_rule
(1)
SV-277029r1148539_rule
(1)
SV-277030r1148542_rule
(1)
SV-277031r1148545_rule
(1)
SV-277032r1148548_rule
(1)
SV-277033r1149397_rule
(1)
SV-277034r1148554_rule
(1)
SV-277035r1148557_rule
(1)
SV-277036r1149407_rule
(1)
SV-277037r1148563_rule
(1)
SV-277038r1148566_rule
(1)
SV-277039r1148569_rule
(1)
SV-277040r1148572_rule
(1)
SV-277041r1148575_rule
(1)
SV-277042r1148578_rule
(1)
SV-277043r1148581_rule
(1)
SV-277044r1149437_rule
(1)
SV-277045r1148587_rule
(1)
SV-277046r1184568_rule
(1)
SV-277047r1148593_rule
(1)
SV-277048r1149408_rule
(1)
SV-277049r1148599_rule
(1)
SV-277050r1149393_rule
(1)
SV-277051r1148605_rule
(1)
SV-277052r1148608_rule
(1)
SV-277053r1148611_rule
(1)
SV-277054r1148614_rule
(1)
SV-277055r1148617_rule
(1)
SV-277056r1148620_rule
(1)
SV-277057r1148623_rule
(1)
SV-277058r1149404_rule
(1)
SV-277059r1148629_rule
(1)
SV-277060r1148632_rule
(1)
SV-277061r1148635_rule
(1)
SV-277062r1149405_rule
(1)
SV-277063r1148641_rule
(1)
SV-277064r1148644_rule
(1)
SV-277065r1148647_rule
(1)
SV-277066r1148650_rule
(1)
SV-277067r1148653_rule
(1)
SV-277068r1148656_rule
(1)
SV-277069r1148659_rule
(1)
SV-277070r1148662_rule
(1)
SV-277071r1148665_rule
(1)
SV-277072r1148668_rule
(1)
SV-277073r1148671_rule
(1)
SV-277074r1148674_rule
(1)
SV-277075r1148677_rule
(1)
SV-277076r1148680_rule
(1)
SV-277077r1148683_rule
(1)
SV-277078r1148686_rule
(1)
SV-277079r1148689_rule
(1)
SV-277080r1148692_rule
(1)
SV-277081r1148695_rule
(1)
SV-277082r1148698_rule
(1)
SV-277083r1148701_rule
(1)
SV-277084r1148704_rule
(1)
SV-277085r1148707_rule
(1)
SV-277086r1148710_rule
(1)
SV-277087r1149413_rule
(1)
SV-277088r1148716_rule
(1)
SV-277089r1149391_rule
(1)
SV-277090r1148722_rule
(1)
SV-277091r1149419_rule
(1)
SV-277092r1148728_rule
(1)
SV-277093r1148731_rule
(1)
SV-277094r1148734_rule
(1)
SV-277095r1148737_rule
(1)
SV-277096r1148740_rule
(1)
SV-277097r1148743_rule
(1)
SV-277098r1148746_rule
(1)
SV-277099r1148749_rule
(1)
SV-277100r1148752_rule
(1)
SV-277101r1148755_rule
(1)
SV-277102r1148758_rule
(1)
SV-277103r1148761_rule
(1)
SV-277104r1148764_rule
(1)
SV-277105r1149406_rule
(1)
SV-277106r1149398_rule
(1)
SV-277107r1149418_rule
(1)
SV-277108r1149417_rule
(1)
SV-277109r1149399_rule
(1)
SV-277110r1148782_rule
(1)
SV-277111r1148785_rule
(1)
SV-277112r1148788_rule
(1)
SV-277113r1149438_rule
(1)
SV-277114r1149392_rule
(1)
SV-277115r1148797_rule
(1)
SV-277116r1148800_rule
(1)
SV-277117r1148803_rule
(1)
SV-277118r1148806_rule
(1)
SV-277119r1148809_rule
(1)
SV-277120r1148812_rule
(1)
SV-277121r1148815_rule
(1)
SV-277122r1148818_rule
(1)
SV-277123r1148821_rule
(1)
SV-277124r1148824_rule
(1)
SV-277125r1148827_rule
(1)
SV-277126r1148830_rule
(1)
SV-277127r1149415_rule
(1)
Tags
AppLocker
All AppLocker events
EventSentry
All EventSentry events
Security
All Windows Security events
stig
All stig events
Vulnerability ID
Severity
Description
V-277028
Medium
The macOS system must prevent Apple Watch from terminating a session lock
V-277029
Medium
The macOS system must enforce screen saver password
V-277030
Medium
The macOS system must enforce session lock no more than five seconds after screen saver is started
V-277031
Medium
The macOS system must configure user session lock when a smart token is removed
V-277032
Medium
The macOS system must disable hot corners
V-277033
Medium
The macOS system must prevent AdminHostInfo from being available at LoginWindow
V-277034
Medium
The macOS system must automatically remove or disable temporary or emergency user accounts within...
V-277035
Medium
The macOS system must enforce time synchronization
V-277036
Medium
The macOS system must limit consecutive failed login attempts to three
V-277037
Medium
The macOS system must display a policy banner at remote login
V-277038
Medium
The macOS system must enforce SSH to display a policy banner
V-277039
Medium
The macOS system must display the Standard Mandatory DOD Notice and Consent Banner at the login w...
V-277040
Medium
The macOS system must configure audit log files to not contain access control lists (ACLs)
V-277041
Medium
The macOS system must configure the audit log folder to not contain access control lists (ACLs)
V-277042
Medium
The macOS system must disable FileVault automatic login
V-277043
Medium
The macOS system must configure SSHD ClientAliveInterval to 900
V-277044
Medium
The macOS system must configure SSHD ClientAliveCountMax to 1
V-277045
Medium
The macOS system must set login grace time to 30
V-277046
High
The macOS system must limit SSHD to FIPS-compliant connections
V-277047
High
The macOS system must limit SSH to FIPS-compliant connections
V-277048
Medium
The macOS system must set account lockout time to 15 minutes
V-277049
Medium
The macOS system must enforce screen saver timeout
V-277050
Medium
The macOS system must disable login to other users' active and locked sessions
V-277051
Medium
The macOS system must disable root login
V-277052
Medium
The macOS system must configure the SSH ServerAliveInterval to 900
V-277053
Medium
The macOS system must configure SSHD channel timeout to 900
V-277054
Medium
The macOS system must configure SSHD unused connection timeout to 900
V-277055
Medium
The macOS system must set SSH Active Server Alive Maximum to 0
V-277056
Medium
The macOS system must enforce auto logout after 86400 seconds of inactivity
V-277057
Medium
The macOS system must be configured to use an authorized time server
V-277058
Medium
The macOS system must enable the time synchronization daemon
V-277059
Medium
The macOS system must configure sudo to log events
V-277060
Medium
The macOS system must be configured to audit all administrative action events
V-277061
Medium
The macOS system must be configured to audit all login and logout events
V-277062
Medium
The macOS system must enable security auditing
V-277063
Medium
The macOS system must configure audit log files to be owned by root
V-277064
Medium
The macOS system must configure audit log folders to be owned by root
V-277065
Medium
The macOS system must configure the audit log files group to wheel
V-277066
Medium
The macOS system must configure the audit log folders group to wheel
V-277067
Medium
The macOS system must configure audit log files to mode 440 or less permissive
V-277068
Medium
The macOS system must configure audit log folders to mode 700 or less permissive
V-277069
Medium
The macOS system must be configured to audit all deletions of object attributes
V-277070
Medium
The macOS system must be configured to audit all changes of object attributes
V-277071
Medium
The macOS system must be configured to audit all failed read actions on the system
V-277072
Medium
The macOS system must be configured to audit all failed write actions on the system
V-277073
Medium
The macOS system must be configured to audit all failed program execution on the system
V-277074
Low
The macOS system must configure audit retention to seven days
V-277075
Medium
The macOS system must configure audit capacity warning
V-277076
Medium
The macOS system must configure audit failure notification
V-277077
Medium
The macOS system must be configured to audit all authorization and authentication events
V-277078
Medium
The macOS system must set smart card certificate trust to moderate
V-277079
Medium
The macOS system must disable root login for SSH
V-277080
Medium
The macOS system must configure audit_control group to wheel
V-277081
Medium
The macOS system must configure audit_control owner to root
V-277082
Medium
The macOS system must configure audit_control owner to mode 440 or less permissive
V-277083
Medium
The macOS system must configure audit_control to not contain access control lists (ACLs)
V-277084
High
The macOS system must disable password authentication for SSH
V-277085
Medium
The macOS system must disable Server Message Block (SMB) sharing
V-277086
Medium
The macOS system must disable Network File System (NFS) service
V-277087
Medium
The macOS system must disable Location Services
V-277088
Medium
The macOS system must disable Bonjour multicast
V-277089
Medium
The macOS system must disable Unix-to-Unix Copy Protocol (UUCP) service
V-277090
Medium
The macOS system must disable Internet Sharing
V-277091
Medium
The macOS system must disable the built-in web server
V-277092
Medium
The macOS system must disable AirDrop
V-277093
Medium
The macOS system must disable FaceTime.app
V-277094
Medium
The macOS system must disable the iCloud Calendar services
V-277095
Medium
The macOS system must disable iCloud Reminders
V-277096
Medium
The macOS system must disable iCloud Address Book
V-277097
Medium
The macOS system must disable iCloud Mail
V-277098
Medium
The macOS system must disable iCloud Notes
V-277099
Medium
The macOS system must disable the camera
V-277100
Medium
The macOS system must disable Siri
V-277101
Medium
The macOS system must disable sending diagnostic and usage data to Apple
V-277102
Medium
The macOS system must disable Remote Apple Events
V-277103
Medium
The macOS system must disable sending audio recordings and transcripts to Apple
V-277104
Medium
The macOS system must disable sending search data from Spotlight to Apple
V-277105
Medium
The macOS system must disable Apple ID setup during Setup Assistant
V-277106
Medium
The macOS system must disable Privacy Setup services during Setup Assistant
V-277107
Medium
The macOS system must disable iCloud storage setup during Setup Assistant
V-277108
High
The macOS system must disable Trivial File Transfer Protocol (TFTP) service
V-277109
Medium
The macOS system must disable Siri Setup during Setup Assistant
V-277110
Medium
The macOS system must disable iCloud Keychain Sync
V-277111
Medium
The macOS system must disable iCloud Document Sync
V-277112
Medium
The macOS system must disable iCloud Bookmarks
V-277113
Medium
The macOS system must disable iCloud Photo Library
V-277114
Medium
The macOS system must disable Screen Sharing and Apple Remote Desktop
V-277115
Medium
The macOS system must disable the System Settings pane for Wallet and Apple Pay
V-277116
Medium
The macOS system must disable the system settings pane for Siri
V-277117
High
The macOS system must apply gatekeeper settings to block applications from unidentified developers
V-277118
High
The macOS system must disable Bluetooth when no approved device is connected
V-277119
Medium
The macOS system must disable the guest account
V-277120
High
The macOS system must enable gatekeeper
V-277121
High
The macOS system must disable unattended or automatic login to the system
V-277122
Medium
The macOS system must secure users' home folders
V-277123
High
The macOS system must require an administrator password to modify systemwide preferences
V-277124
Medium
The macOS system must disable Airplay Receiver
V-277125
Medium
The macOS system must disable TouchID for unlocking the device
V-277126
Medium
The macOS system must disable Media Sharing
V-277127
Medium
The macOS system must disable Bluetooth Sharing
V-277128
Medium
The macOS system must disable AppleID and internet Account Modification
V-277129
Medium
The macOS system must disable Content Caching service
V-277130
Medium
The macOS system must disable iCloud Desktop and Document folder sync
V-277131
Medium
The macOS system must disable iCloud Game Center
V-277132
Medium
The macOS system must disable iCloud Private Relay
V-277133
Medium
The macOS system must disable Find My service
V-277134
Medium
The macOS system must disable Personalized Advertising
V-277135
Medium
The macOS system must disable sending Siri and Dictation information to Apple
V-277136
Medium
The macOS system must enforce On Device Dictation
V-277137
Medium
The macOS system must disable Dictation
V-277138
Medium
The macOS system must disable Printer Sharing
V-277139
Medium
The macOS system must disable Remote Management
V-277140
Medium
The macOS system must disable the Bluetooth System Settings pane
V-277141
Medium
The macOS system must disable the iCloud Freeform services
V-277142
Medium
The macOS system must disable iPhone Mirroring
V-277143
Medium
The macOS system must issue or obtain public key certificates from an approved service provider
V-277144
Medium
The macOS system must require that passwords contain a minimum of one numeric character
V-277145
Medium
The macOS system must restrict maximum password lifetime to 60 days
V-277146
Medium
The macOS system must require a minimum password length of 14 characters
V-277147
Medium
The macOS system must require that passwords contain a minimum of one special character
V-277148
Medium
The macOS system must disable password hints
V-277149
Medium
The macOS system must remove password hints from user accounts
V-277150
Medium
The macOS system must enforce smart card authentication
V-277151
Medium
The macOS system must allow smart card authentication
V-277152
Medium
The macOS system must enforce multifactor authentication for login
V-277153
Medium
The macOS system must enforce multifactor authentication for the su command
V-277154
Medium
The macOS system must enforce multifactor authentication for privilege escalation through the sud...
V-277155
Medium
The macOS system must require that passwords contain a minimum of one lowercase character and one...
V-277156
Medium
The macOS system must set minimum password lifetime to 24 hours
V-277157
Medium
The macOS system must disable accounts after 35 days of inactivity
V-277158
Medium
The macOS system must configure Apple System Log (ASL) files owned by root and group to wheel
V-277159
Medium
The macOS system must configure Apple System Log (ASL) files to mode 640 or less permissive
V-277160
Medium
The macOS system must require users to reauthenticate for privilege escalation when using the "su...
V-277161
Medium
The macOS system must configure system log files owned by root and group to wheel
V-277162
Medium
The macOS system must configure system log files to mode 640 or less permissive
V-277163
Low
The macOS system must configure install.log retention to 365
V-277164
Medium
The macOS system must configure sudoers timestamp type
V-277165
High
The macOS system must ensure System Integrity Protection (SIP) is enabled
V-277166
High
The macOS system must enforce FileVault
V-277167
Medium
The macOS system must enable macOS Application Firewall
V-277168
Medium
The macOS system must configure the login window to prompt for username and password
V-277169
Medium
The macOS system must disable the TouchID prompt during Setup Assistant
V-277170
Medium
The macOS system must disable the Screen Time prompt during Setup Assistant
V-277171
Medium
The macOS system must disable Unlock with Apple Watch during Setup Assistant
V-277172
Medium
The macOS system must disable Handoff
V-277173
Medium
The macOS system must disable proximity-based password sharing requests
V-277174
Medium
The macOS system must disable Erase Content and Settings
V-277175
Medium
The macOS system must enable Authenticated Root
V-277176
Medium
The macOS system must prohibit user installation of software into /users/
V-277177
Medium
The macOS system must authorize USB devices before allowing connection
V-277178
Medium
The macOS system must ensure Secure Boot level is set to "full"
V-277179
Medium
The macOS system must enforce enrollment in Mobile Device Management (MDM)
V-277180
Medium
The macOS system must enable Recovery Lock
V-277181
Medium
The macOS system must enforce installation of XProtect Remediator and Gatekeeper updates automati...
V-277182
Medium
The macOS system must disable Genmoji AI Creation
V-277183
Medium
The macOS system must disable Apple Intelligence Image Playground
V-277184
Medium
The macOS system must disable Apple Intelligence Writing Tools
V-277185
High
The macOS system must install security-relevant software updates within 30 days unless the time p...
V-279329
Medium
The macOS system must disable Apple Intelligence during Setup Assistant
V-282964
High
The macOS system must be a version supported by the vendor