FortiSOAR Discussions
Anonymous
Not applicable

Battling Brute Force Attacks on Internet-Exposed Assets With FortiSOAR's Brute Force Attack Response

The Brute Force Attack Response Solution Pack is designed to analyze login failures and detect any potential brute force attempts originating from a specific source of attack. By utilizing connectors like FortiSIEM and Syslog, the solution can efficiently collect and process relevant data. When multiple login failures occur on an asset accessible through the internet, the system generates a Brute Force Attempts alert, which then initiates the response workflow. This use-case is focused on addressing security incidents where unauthorized access attempts are made to an internet-exposed asset.

Reference: https://fortisoar.contenthub.fortinet.com//detail.html?entity=bruteForceAttackResponse&version=1.2.0...

0 REPLIES 0