On this page

Atomicorp WAF Rule 350023

Rule Summary

  • Rule ID: 350023
  • Status: Active
  • Alert message: Atomicorp.com WAF Rules: Non-Existant File Google Recon attempt
  • Observed CWEs: None documented
  • Revision: 1
  • Rule severity: Critical (2)
  • Phase: 2 (request body)
  • Request surfaces: Request URI
  • Logging: inherited from SecDefaultAction

Description

This rule looks for a specific recon tools probe for non-existant files, such as “thisdoesnotexistahaha.php”.

False Positives

There are no known false positive conditions for this rule. It is not recommended that you disable this rule. If this is a false positive, please report this to our security team to determine if this is a legitimate case, or if its clever attack on your system. Instructions to report false positives are detailed on the Reporting False Positives wiki page.

If you wish to tune this rule yourself, please see the Tuning the Atomicorp WAF Rules page for basic information.

This is a selected list of documented research observations, not an exhaustive coverage matrix. Absence of a CVE does not imply absence of protection.

No selected related public CVE research notes are currently published.

Documentation Source

  • Original wiki page: WAF 350023
  • Source revision: 1619
  • Source revision date: 2011-06-23