By monitoring HTTP, HTTPS port traffic of customer-defined IPs, WAF service monitors for hacker's attack attempts in real-time. WAF service categorizes attacks including injection, cross-site scripting (XSS) and web scans through web firewall event analysis and WAF service can effectively respond to new web attack tactics by providing various defense mechanisms necessary for web security (e,g, detect internal data leakage, unauthorized access and web forgery).
WAF service supports web firewall fault management by performing web firewall signature pattern and firmware updates. WAF service can also support reliable web service operations by detecting hacking attempts such as bad bots and other new web security threats including Open Web Application Security Project (OWASP) top 10, top 8 vulnerability attacks defined by the National Intelligence Service and zero-day attacks.
Real-time monitoring on various attack events are notified to the customer to enable preemptive response to security threat. Details of detected events (IP/Port, target IP, detected time, etc.) are displayed on the dashboard.
- 24/7 event monitoring (alert raising, monthly reports)
- Attack categorization through web firewall event analysis (injection, XSS, file include, file upload/download, web scan, etc.)
- Detect internal data leakage, unauthorized access and web forgery
- Detect Apache Struts vulnerability
-IP blocking in the event of attempted attacks on registered URLs
- Automatically update security threats collected by TI (e.g. signature pattern) and update firmware
- Manage web application firewall failures
- Provide blocked policy list of each customer
- Provide detailed information about User-Agent and Referer
Whether you’re looking for a specific business solution or just need some questions answered, we’re here to help