Become a Beta Tester

DocsProtection

Attack Types

All 19 attack types Frabs detects.

Attack typeIn short
DDoS & FloodingFloods of packets, connections or requests sent from a VM.
Port ScanningOne VM probing many ports on other machines.
Host & Network DiscoverySweeps across many addresses or networks to find live hosts and services.
Vulnerability & Exploit ScanningProbing other machines for known weaknesses.
Brute Force & Credential AttacksRepeated login attempts against other machines.
Malware & Command-and-ControlCommunication matching known command-and-control or botnet behaviour.
Malicious Payload DistributionA VM serving or fetching known malicious payloads.
Spam & Email AbuseUnusual volumes or patterns of outbound mail.
DNS AbuseDNS floods, tunnelling, generated domains and resolver abuse.
Proxy, Relay & AnonymisationA VM relaying other people's traffic.
Web & Application AbuseAutomated web traffic: floods, scraping, enumeration and login abuse.
Remote-Service AbuseScanning for exposed remote-access and database services.
CryptominingCommunication with cryptocurrency mining pools.
Data Exfiltration & Suspicious TransfersUnusual outbound transfers for this VM.
Network Tunnelling & Covert TrafficTraffic carried inside other protocols.
Cryptocurrency & Blockchain AbuseScanning and abuse aimed at blockchain and wallet services.
Reconnaissance & Internet-Wide AbuseScanning at Internet scale.
Abnormal Network BehaviourBehaviour far outside normal that matches no specific signature.
Reputation & Abuse IntelligenceContact with destinations on threat-intelligence and abuse lists.