Latest Posts

June 23, 2020
Ref: https://owasp.org/www-community/attacks/Credential_stuffing
Credential stuffing is the automated injection of breached username/password pairs in order to fraudulently gain access to user accounts. This is a subset of the brute force attack category: large numbers of spilled credentials are automatically entered into websites until they are potentially matched to an existing account, which the attacker can then hijack for their own purposes.
Application Level Protection Recommended:
How does Modshield SB protect from these kind of attacks
At a configuration level:
Specific to your application:
Add a simple custom rule to protect critical APIs against an attack of this kind. Modhsield SB used Modsecurity and the OWASP CRS at its engine and hence finding a rule that best fits your purpose is a simple Google search away. An example for doing this is given below:
Most application firewalls protect you from a denial of service kind of attack. However a credential stuffing attack looks more like legitimate requests rather than a random flooding of requests. It requires careful analysis to implement an intelligent protection which will not lead to legitimate requests being blocked by the firewall
Latest Posts
Get the latest cybersecurity insights, threat intelligence, and security best practices delivered straight to your inbox.