Skip to main content
Skip table of contents

ASM Messages (Expanded Format)

Classification

Rule Name

Rule Type

Common Event

Classification

ASM Messages (Expanded Format)Base RuleGeneral Attack ActivityAttack
Information Leakage DetectedSub RuleData CompromisedCompromise
Cross Site Scripting DetectedSub RuleCross-Site ScriptingAttack
Detection Evasion DetectedSub RuleGeneral Attack ActivityAttack
HTTP Parser Attack DetectedSub RuleGeneral Attack ActivityAttack
Predictable Resource Location DetectedSub RuleVuln Low Severity : Misc.Vulnerability
Non-Browser Client DetectedSub RuleHTTP ConnectActivity
Forceful Browsing DetectedSub RuleGeneral Attack ActivityAttack
Abuse Of Functionality DetectedSub RuleGeneral Attack ActivityAttack
Command Execution DetectedSub RuleArbitrary Code ExecutionAttack
Session Hijacking DetectedSub RuleSession Hijacking ActivityAttack
Buffer Overflow DetectedSub RuleBuffer Overflow/UnderflowAttack
Parameter Tampering DetectedSub RuleGeneral Attack ActivityAttack
Buffer Overflow And Forceful Browsing BlockedSub RuleFailed General Attack ActivityFailed Attack

Mapping with LogRhythm Schema  

Device Key in Log Message

LogRhythm Schema

Data Type

LOC0<severity>Text/String
N/A<vmid>Numeric
asm<sip>IP Address
N/A<dip>IP Address
N/A<dport>Number
N/A<protname>Text/String
N/A<session>Number
N/A<process>Text/String
N/A<object>Text/String
N/A<objectname>Text/String
N/A<subject>Text/String
N/A<threatname>Text/String
User-Agent<useragent>Text/String
N/A<url>Text/String
N/A<command>Text/String
N/A<tag1>Text/String
N/A<tag2>Text/String
N/A<tag3>Text/String
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.