Monitors data volume per client IP each minute, detecting sudden spikes that may indicate data exfiltration or leaks.
Tracks requests per client IP per minute to detect high rates indicating potential server overload or unauthorized scraping.
Alerts on multiple 4XX errors from a client IP within a minute, indicating possible restricted access attempts or a fuzzing attack.
Detects when a client IP receives no response within a minute, signaling network issues or potential overload attempts.
Monitors data volume per endpoint per minute to detect potential data extraction or exposure.
Monitors requests per endpoint per minute to detect spikes indicating potential API attacks.
Tracks 4XX responses per endpoint per minute to identify potential restricted access attempts or fuzzing attacks.
Identifies endpoints frequently failing to respond, signaling performance issues or targeted attacks.
Monitors server data output per minute to detect spikes indicating unauthorized access or anomalies.
Monitors total server requests per minute to detect spikes indicating heavy load or potential DDoS attacks.
Alerts on multiple 4XX errors per server per minute to identify issues impacting clients or endpoints.
Detects multiple server failures to respond within a minute, signaling overload, faults, or disruption attempts.
Copyright © 2024 Cybelin | Data Loss Prevention