RULE(RULE ID:322822)

Rule General Information
Release Date: 2019-07-23
Rule Name: Protocol HTTP Authorization Header Brute Force Attack
Severity:
CVE ID:
Rule Protection Details
Description: A brute-force attack is a trial-and-error method used to obtain valuable information such as domain names, user names, and passwords. The HTTP protocol Authorizations header brute force attack is used to guess the login credentials of a website. If network address translation (NAT) exists on the network, this rule may cause false positives. In this case, you are advised to disable this rule.
Impact: Remote attacker may obtain the username and password of the target website.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, Others
Reference:
Solutions
Set a strong password which has at least 15 characters including uppercase letters, lowercase letters, numbers and symbols.