溫馨提示×

溫馨提示×

您好,登錄后才能下訂單哦!

密碼登錄×
登錄注冊×
其他方式登錄
點(diǎn)擊 登錄注冊 即表示同意《億速云用戶服務(wù)條款》

​OSSIM事件分類/子類總結(jié)表

發(fā)布時間:2020-07-22 16:06:41 來源:網(wǎng)絡(luò) 閱讀:1300 作者:李晨光 欄目:安全技術(shù)

OSSIM事件類/子類 CATEGORY/ SUBCATEGORY 總結(jié)表

在數(shù)據(jù)源里可以查看詳情,因?yàn)轭惡妥宇悤@示在SIEM中。

事件 類/子類

數(shù)據(jù)源分類

Access

ACL Deny


ACL Permit


ConnectionClosed


ConnectionOpened


File Access


File Blocked


Firewall Deny


Firewall Misc Event


Firewall Permit


Timeout


Traffic Inbound


Traffic Outbound


Tunnel Closed


Tunnel Connection


Web Appliation Access


Alarm

Attacks


Bruteforce


Dos


Malware


Misc


Network


Policy


Scada


Scan


Aert

HostIDS Alert


IDS Alert


IPS Alert


Availability

State Critical


State Down


State Unknown


State Up


State Warning


Database

Error


Login


Login Failed


Logout


Query


Start


Stop


Recon

Misc


Scanner


Application

DHCP Error


DHCP Request


DNS Succesful Zone Tranfer


DNS Zone Transfer Failed


FTP commandExecuted


FTPConnectionOpened


Mail Received


Mail Sent


Spam Detected


××× Closed


××× Denied


Web Error


Web Denied


Web Modified


WebProxy


Web Redirected


Authentication

Account Lockout


Admin Access


Brute force


Default Credentials


Failed


FTP Login Failed


FTP Login Succeeded


Goup Added


Goup Deleted


Login


Logout


Password Change Failed


Password Change Succeeded


User Changed


User Created


User Deleted


Exploit

Attack Response


Buffer Overflow


Command Execution


Cross Site Scripting


Denial Of Service


Directory Traversal


File Inclusion


Format String


Spoofing


ShellCode


SQL Injection


Malware

Adware


Backdoor


Fake Antivirus


Generic


KeyLogger


Spyware


Trojan


Virus


Worm


Policy

Anonymity


Check Failed


Instant Messaging Chat


P2P


Phishing


Porn


Suspicious

Bad Traffic


Blacklist Address


Database Activity


DNS Protocol Anomaly


FTP Protocol Anomaly


HTTP Protocol Anomaly


Mail Protocol Anomaly


Netbios Activity


Network Anomaly


NFS Activity


RPC Activity


ScadaActivity


SSH Activity


SSH Protocol Anomaly


Telnet Protocol Anomaly


Threshold Exceeded


Web Attack or Scan


Inventory

Mac Change


MacDetected


Operating System Change


Operating System Detected


Service Change


Service Detected


ServiceMisc


 

 

向AI問一下細(xì)節(jié)

免責(zé)聲明:本站發(fā)布的內(nèi)容(圖片、視頻和文字)以原創(chuàng)、轉(zhuǎn)載和分享為主,文章觀點(diǎn)不代表本網(wǎng)站立場,如果涉及侵權(quán)請聯(lián)系站長郵箱:is@yisu.com進(jìn)行舉報,并提供相關(guān)證據(jù),一經(jīng)查實(shí),將立刻刪除涉嫌侵權(quán)內(nèi)容。

AI