Skip to main content
Skip table of contents

ASM Messages 2

Classification

Rule Name

Rule Type

Common Event

Classification

ASM Messages 2Base RuleGeneral Attack ActivityAttack
Information LeakageSub RuleData CompromisedCompromise
Cross Site ScriptingSub RuleCross-Site ScriptingAttack
Detection EvasionSub RuleGeneral Attack ActivityAttack
HTTP ParserSub RuleHTTP TraceActivity
Predictable Resource LocationSub RuleVuln Low Severity : Misc.Vulnerability
Non-Browser ClientSub RuleHTTP ConnectActivity
Forceful BrowsingSub RuleGeneral Attack ActivityAttack
Abuse of FunctionalitySub RuleGeneral Attack ActivityAttack
Command ExecutionSub RuleArbitrary Code ExecutionAttack
Session HijackingSub RuleSession Hijacking ActivityAttack
Buffer OverflowSub RuleBuffer Overflow/UnderflowAttack
PassedSub RuleGeneral Process InformationInformation

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

N/A<severity>Text/String
N/A<vmid>Text/String
N/A<vendorinfo>Text/String
N/A<sip>IP Address
N/A<sname>Text/String
N/A<dip>IP Address
N/A<sport>Number
N/A<dport>Number
N/A<protname>Text/String
N/A<process>Text/String
N/A<object>Text/String
N/A<threatname>Text/String
N/A<useragent>Text/String
status_code<responsecode>Number
N/A<tag1>Text/String
N/A<tag2>Text/String
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.