Technical Tip: Man in The Browser Protection (MiTB)
| Description | This article describes how to configure a protection policy to prevent Man-in-the-Browser (MiTB) attacks.
Man-in-the-Browser (MiTB) attacks utilize a Trojan horse that infects a web browser and manipulates calls between the browser and its security mechanisms by taking advantage of browser vulnerabilities to modify web pages, change content, or insert additional data into ongoing transactions. |
| Scope | FortiWeb. |
| Solution | FortiWeb implements security rules including obfuscation, encryption, anti-keylogger, and an AJAX request whitelist.
Simple String: The field is a string that the request URL must match exactly. Regular Expression: The field is a regular expression that defines a set of matching URLs.
|








