Become a Beta Tester

DocsAttack Types

Web & Application Abuse

Automated web traffic: floods, scraping, enumeration and login abuse.

A VM floods or abuses websites: request floods, aggressive scraping, account enumeration or login abuse. Frabs counts HTTPS requests and the patterns behind them per VM.

Detectors (8)

DetectorMeasuresWarningIncidentCritical
Credential StuffingShort connections to authentication ports (attempts)100 in 5 min500 in 10 min2,000 in 30 min
HTTPS Request FloodOutbound TLS connections per second to web ports (443, 8443) (conn/s)500 in 30 s2,000 in 30 s5,000 in 30 s
Aggressive CrawlingDistinct targets on the service's ports (targets)100 in 5 min1,000 in 10 min5,000 in 30 min
Web Application ScanningDistinct targets on the service's ports (targets)50 in 10 min250 in 30 min1,000 in 1 h
CMS ScanningDistinct targets on the service's ports (targets)50 in 10 min250 in 30 min1,000 in 1 h
WordPress ScanningDistinct targets on the service's ports (targets)50 in 10 min250 in 30 min1,000 in 1 h
Login Brute ForceShort connections to authentication ports (attempts)100 in 5 min500 in 10 min2,000 in 30 min
Web Vulnerability ProbingDistinct targets on the service's ports (targets)50 in 10 min250 in 30 min1,000 in 1 h

Change the thresholds

Use Custom Protection to change any of these, or set them for one VM. See Detectors and Thresholds.