Brute Force Attack Success
The brute force attack success detection in login security can detect and record instances where hackers successfully use enumeration or brute force password attacks on the server. Brute force attacks are one of the main attack methods used by hackers, so it’s important to monitor IPs that frequently launch attacks and block them using firewalls.
Detection Principle
After installing the Agent client, the plugin will monitor related log files in real time, collecting login behavior records and uploading them to the cloud for security analysis. The attack detection model analyzes the log entries for hacker attack behavior and presents the findings on the frontend.
Detection Cycle
- Real-time detection upon plugin startup
Detection Items
Detection Item | Description |
---|---|
SSH | Supports detection of SSH remote login brute force attacks |