The risk levels of API security events for NSFOCUS WAF version 6080 are categorized as follows:
:Low Risk Events
:Medium Risk Events
:High Risk Events
API Security Event Types:
| Event Type | Description |
| Abuse | Attacks covered include JavaScript-related, account takeover, and CSRF. |
| Sensitive Data Exposure | Attacks covered include sensitive information leakage, anti-crawling, information leakage prevention, and illegal downloading. |
| Lack of Rate Limiting | Attacks covered include brute force attacks and scan protection. |
| API Protocol Violation | Attacks covered include HTTP protocol validation and XML protocol validation. |
| Misconfiguration | Attacks covered include Web server/plugin protection. |
| Injection | Attacks covered include general Web protection, semantic analysis engine, and energy absorption. |
| Improper Asset Management | Attacks covered include shadow APIs. |
| Custom Policies | Attacks covered include user-defined policies. |
| Compliance Verification | Attacks covered include compliance policies. |