| 1.3 WN19-00-000030 | CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT I | Windows | CONFIGURATION MANAGEMENT |
| 1.9 RHEL-10-001000 | CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT I | Unix | SYSTEM AND SERVICES ACQUISITION |
| 1.13 WN22-00-000130 | CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT I | Windows | ACCESS CONTROL |
| 1.15 OL08-00-010121 | CIS Oracle Linux 8 STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.23 CISC-RT-000290 | CIS Cisco IOS XE Router RTR STIG v1.1.0 CAT I | Cisco | ACCESS CONTROL |
| 1.25 CISC-ND-000720 | CIS Cisco IOS Switch NDM STIG v1.1.0 CAT I | Cisco | SYSTEM AND COMMUNICATIONS PROTECTION |
| 1.43 SOL-11.1-020130 | CIS Solaris 11 SPARC STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.57 CISC-RT-000640 | CIS Cisco IOS XE Switch RTR STIG v1.1.0 CAT I | Cisco | CONFIGURATION MANAGEMENT |
| 1.71 PHTN-40-000208 | CIS VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.74 CISC-RT-000730 | CIS Cisco IOS XR Router RTR STIG v1.0.0 CAT I | Cisco | SYSTEM AND COMMUNICATIONS PROTECTION |
| 1.74 O19C-00-015400 | CIS Oracle Database 19c STIG v1.1.0 CAT I OracleDB | OracleDB | IDENTIFICATION AND AUTHENTICATION |
| 1.75 O19C-00-015500 | CIS Oracle Database 19c STIG v1.1.0 CAT I Windows | Windows | IDENTIFICATION AND AUTHENTICATION |
| 1.80 O19C-00-016800 | CIS Oracle Database 19c STIG v1.1.0 CAT I OracleDB | OracleDB | SYSTEM AND COMMUNICATIONS PROTECTION |
| 1.136 WN19-CC-000430 | CIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT I | Windows | CONFIGURATION MANAGEMENT |
| 1.139 WN16-CC-000500 | CIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT I | Windows | MAINTENANCE |
| 1.140 WN22-CC-000470 | CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT I | Windows | MAINTENANCE |
| 1.143 WN22-CC-000500 | CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT I | Windows | MAINTENANCE |
| 1.172 SLES-15-040060 | CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.174 SLES-15-040062 | CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.179 SOL-11.1-080010 | CIS Solaris 11 X86 STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.194 SOL-11.1-080160 | CIS Solaris 11 X86 STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.195 SOL-11.1-080160 | CIS Solaris 11 SPARC STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 1.226 WN16-SO-000250 | CIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT I | Windows | CONFIGURATION MANAGEMENT |
| 1.227 WN16-SO-000260 | CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT I | Windows | CONFIGURATION MANAGEMENT |
| 1.228 WN16-SO-000270 | CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT I | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
| 1.237 WN19-SO-000300 | CIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT I | Windows | IDENTIFICATION AND AUTHENTICATION |
| 1.257 OL09-00-002302 | CIS Oracle Linux 9 STIG v1.0.0 CAT II | Unix | CONFIGURATION MANAGEMENT |
| 1.333 OL08-00-040171 | CIS Oracle Linux 8 STIG v1.0.0 CAT I | Unix | CONFIGURATION MANAGEMENT |
| 5.4.6 Ensure no accounts are configured with blank or null passwords | CIS Amazon Linux 2 STIG v2.0.1 STIG | Unix | IDENTIFICATION AND AUTHENTICATION |
| AIOS-18-010400 - Apple iOS/iPadOS 18 must require a valid password be successfully entered before the mobile device data is unencrypted. | MobileIron - DISA Apple iOS/iPadOS 18 v2r3 | MDM | SYSTEM AND COMMUNICATIONS PROTECTION |
| AIOS-18-011200 - iPhone and iPad must have the latest available iOS/iPadOS operating system installed. | AirWatch - DISA Apple iOS/iPadOS 18 v2r3 | MDM | CONFIGURATION MANAGEMENT |
| AIOS-18-015600 - Apple iOS/iPadOS 18 must disable the ability to hide apps. | AirWatch - DISA Apple iOS/iPadOS 18 v2r3 | MDM | CONFIGURATION MANAGEMENT |
| AIOS-26-010400 - Apple iOS/iPadOS 26 must require a valid password be successfully entered before the mobile device data is unencrypted. | MobileIron - DISA Apple iOS/iPadOS 26 v1r3 | MDM | SYSTEM AND COMMUNICATIONS PROTECTION |
| ARST-ND-000340 - The Arista network device must be configured to prohibit the use of all unnecessary and/or nonsecure functions, ports, protocols, and/or services. | DISA Arista MLS EOS 4.X NDM STIG v2r2 | Arista | CONFIGURATION MANAGEMENT |
| ARST-RT-000160 - The Arista perimeter router must be configured to protect an enclave connected to an alternate gateway by using an inbound filter that only permits packets with destination addresses within the sites address space. | DISA Arista MLS EOS 4.X Router STIG v2r2 | Arista | ACCESS CONTROL |
| CD16-00-005200 - PostgreSQL must protect the confidentiality and integrity of all information at rest. | DISA Crunchy Data Postgres 16 STIG v1r2 Unix | Unix | SYSTEM AND COMMUNICATIONS PROTECTION |
| CNTR-K8-000370 - The Kubernetes Kubelet must have anonymous authentication disabled. | DISA Kubernetes STIG v2r6 | Unix | ACCESS CONTROL |
| CNTR-K8-000440 - The Kubernetes kubelet staticPodPath must not enable static pods. | DISA Kubernetes STIG v2r6 | Unix | ACCESS CONTROL |
| CNTR-K8-002000 - The Kubernetes API server must have the ValidatingAdmissionWebhook enabled. | DISA Kubernetes STIG v2r6 | Unix | ACCESS CONTROL |
| CNTR-K8-002001 - Kubernetes must enable PodSecurity admission controller on static pods and Kubelets. | DISA Kubernetes STIG v2r6 | Unix | ACCESS CONTROL |
| CNTR-K8-002011 - Kubernetes must have a Pod Security Admission control file configured. | DISA Kubernetes STIG v2r6 | Unix | ACCESS CONTROL |
| F5BI-AP-999999 - The version of F5 BIG-IP must be a supported version. | DISA F5 BIG-IP Access Policy Manager STIG v2r4 | F5 | SYSTEM AND INFORMATION INTEGRITY |
| GEN002040 - There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the system - 'shosts.equiv' | DISA AIX 5.3 STIG v1r2 | Unix | CONFIGURATION MANAGEMENT |
| GOOG-16-010500 - The Google Android device must be configured to disable Wi-Fi Aware for Work Profile apps. | AirWatch - DISA Google Android 16 COBO STIG v1r3 | MDM | CONFIGURATION MANAGEMENT |
| MADB-10-005200 - MariaDB must protect the confidentiality and integrity of all information at rest. | DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDB | MySQLDB | SYSTEM AND COMMUNICATIONS PROTECTION |
| WN22-DC-000150 - Windows Server 2022 directory data (outside the root DSE) of a nonpublic directory must be configured to prevent anonymous access. | DISA Microsoft Windows Server 2022 STIG v2r8 | Windows | CONFIGURATION MANAGEMENT |
| WN22-SO-000210 - Windows Server 2022 must not allow anonymous SID/Name translation. | DISA Microsoft Windows Server 2022 STIG v2r8 | Windows | CONFIGURATION MANAGEMENT |
| WN22-SO-000220 - Windows Server 2022 must not allow anonymous enumeration of Security Account Manager (SAM) accounts. | DISA Microsoft Windows Server 2022 STIG v2r8 | Windows | CONFIGURATION MANAGEMENT |
| WN25-DC-000150 - Windows Server 2025 directory data (outside the root DSE) of a nonpublic directory must be configured to prevent anonymous access. | DISA Microsoft Windows Server 2025 STIG v1r1 | Windows | CONFIGURATION MANAGEMENT |
| WN25-SO-000230 - Windows Server 2025 must not allow anonymous enumeration of shares. | DISA Microsoft Windows Server 2025 STIG v1r1 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |