The risk levels of API security events for NSFOCUS WAF version 6080 are categorized as follows:
:Low Risk Events
:Medium Risk Events
:High Risk Events
API Security Event Types:
Event Type | Description |
Abuse | Attacks covered include JavaScript-related, account takeover, and CSRF. |
Sensitive Data Exposure | Attacks covered include sensitive information leakage, anti-crawling, information leakage prevention, and illegal downloading. |
Lack of Rate Limiting | Attacks covered include brute force attacks and scan protection. |
API Protocol Violation | Attacks covered include HTTP protocol validation and XML protocol validation. |
Misconfiguration | Attacks covered include Web server/plugin protection. |
Injection | Attacks covered include general Web protection, semantic analysis engine, and energy absorption. |
Improper Asset Management | Attacks covered include shadow APIs. |
Custom Policies | Attacks covered include user-defined policies. |
Compliance Verification | Attacks covered include compliance policies. |