Skip to content
  • Solutions
    By Role
    • For Developers
    • For Content Managers
    • For Agencies
    • For IT Admins
    • For Web Hosters
    • For Developers
    • For Content Managers
    • For Agencies
    • For IT Admins
    • For Web Hosters
    By Infrastructure
    • Overview
    • AWS
    • Microsoft Azure
    • Alibaba Cloud
    • Google Cloud Platform
    • Vultr
    • Overview
    • AWS
    • Microsoft Azure
    • Alibaba Cloud
    • Google Cloud Platform
    • Vultr
    • Digital Ocean
    • Linode
    • Upcloud
    • Oracle
    • OVH
    • Digital Ocean
    • Linode
    • Upcloud
    • Oracle
    • OVH
  • Product
    • Plesk Features
    • Plesk Editions
    • What’s new
    • Pricing
    • Roadmap
    • Lifecycle Policy
    • Extensions Catalogue
  • Pricing
  • Extensions
    Featured Extensions
    • SocialBee
    • WP Toolkit
    • Sitejet Builder for Plesk
    • SEO Toolkit
    • Joomla! Toolkit
    • Premium Email
    • Email Security
    • SocialBee
    • WP Toolkit
    • Sitejet Builder for Plesk
    • SEO Toolkit
    • Joomla! Toolkit
    • Premium Email
    • Email Security
    Bundles and packs:
    • Business and Collaboration Edition
    • WP pack
    • Hosting pack
    • Power pack
    • Language pack
    • Business and Collaboration Edition
    • WP pack
    • Hosting pack
    • Power pack
    • Language pack

    See all Extensions

  • For Partners
    • Plesk Contributor Program
    • Plesk Partner Program
    • Affiliate program
    • Plesk University
  • Help Center
    • Documentation
    • Professional Services
    • Support
    • Contact Us
    • Wiki
    • Forum
  • Plesk 360 login
  • Free Trial
  • Pricing
  • Solutions
    • By Role
      • For Developers
      • For Content Managers
      • For Agencies
      • For IT Admins
      • For Web Hosters
    • By Infrastructure
      • Overview
      • Plesk on Amazon Web Services (AWS & Lightsail)
      • Microsoft Azure
      • Alibaba Cloud
      • Google Cloud Platform
      • Vultr
      • DigitalOcean
      • Linode
      • UpCloud
      • Oracle
      • OVH
  • Products
  • Pricing
  • Extensions
    • Featured Extensions
      • SocialBee
      • WP Toolkit
      • Sitejet Builder for Plesk
      • SEO Toolkit
      • Joomla! Toolkit
      • Premium Email
      • Email Security
    • Bundles and packs:
      • Business and Collaboration Edition
      • WP pack
      • Hosting pack
      • Power pack
      • Language pack
      • See all Extensions
  • For Partners
    • Plesk Contributor Program
    • Plesk Partner Program
    • Affiliate Program
    • Plesk University
  • Help Center
    • Documentation
    • Professional Services
    • Support
    • Contact Us
    • Wiki
    • Forum
  • Plesk 360 login
  • Free Trial
  • Pricing
  • Solutions
    • By Role
      • For Developers
      • For Content Managers
      • For Agencies
      • For IT Admins
      • For Web Hosters
    • By Infrastructure
      • Overview
      • Plesk on Amazon Web Services (AWS & Lightsail)
      • Microsoft Azure
      • Alibaba Cloud
      • Google Cloud Platform
      • Vultr
      • DigitalOcean
      • Linode
      • UpCloud
      • Oracle
      • OVH
  • Products
  • Pricing
  • Extensions
    • Featured Extensions
      • SocialBee
      • WP Toolkit
      • Sitejet Builder for Plesk
      • SEO Toolkit
      • Joomla! Toolkit
      • Premium Email
      • Email Security
    • Bundles and packs:
      • Business and Collaboration Edition
      • WP pack
      • Hosting pack
      • Power pack
      • Language pack
      • See all Extensions
  • For Partners
    • Plesk Contributor Program
    • Plesk Partner Program
    • Affiliate Program
    • Plesk University
  • Help Center
    • Documentation
    • Professional Services
    • Support
    • Contact Us
    • Wiki
    • Forum
  • Plesk 360 login
  • Free Trial
Plesk 360 login
Free Trial

Knowledge Base

Atomic ModSecurity Rule Sets

 
administrator guideserver administrationweb application firewall modsecurityanti spamanti spam protection

The Atomic Basic ModSecurity rule set includes the following:

  • SQL injection protection.
  • Cross-site scripting protection.
  • Remote and local file injection/inclusion attack protection.
  • Command injection protection.
  • Limited virtual patches (The Complete rule set includes all virtual
    patches. Refer to the following article for explanation what is a
    virtual patch: https://atomicorp.com/jitp).

The complete Advanced ModSecurity Rules by Atomicorp rule set includes
the following:

  • Full Basic ModSecurity rule set.
  • Denial of Service protection.
  • Real time blacklists (Supports third party blacklists such as
    Spamhaus).
  • Advanced anti-evasion protection (Prevents someone from trying to
    bypass the WAF).
  • Threat Intelligence protection (This is based on real time attack
    intelligence reported by other customers, which is then make
    available in real time to everyone using the complete rules. This
    means if customer A is attacked by a system, everyone blocks that
    attacker in real time.)
  • Automatic secure whitelisting of search engines (No false positives
    with search engines, they are automatically detected and whitelisted
    in a way that prevents spoofing. This ensures that sites page rank is
    also protected.)
  • Malicious bot protection.
  • Automatic removal of malicious code from websites (If a website is
    compromised, the complete rules will remove the malicious code from
    the website in real time, without touching any code on the system.
    This ensures that there is no risk to the customer websites, and also
    removes anything malicious from them. This means you can use the
    rules on a system that’s already been compromised, and eliminate the
    effects of the web applications compromise without having to do
    anything other than install the rules.)
  • Advanced protection rules for SQL injection, XSS, CSRF, RFI, LFI.
  • Advanced protection for WordPress, Joomla, Drupal, Magento, and other
    popular web applications.
  • Brute force protection (Detects and blocks web authentication brute
    force attacks, without relying on either status codes or logs).
  • Anti-spam protection (Blocks web spam).
  • All Virtual Patches for Zero Day vulnerabilities (Refer to the
    following article for explanation what is a virtual patch:
    https://atomicorp.com/jitp).
  • Data loss protection rules (Protection from credit card theft,
    sensitive data, error messages that show sensitive data).
  • PCI-DSS compliance (Meets PCI-DSS WAF compliance requirements).
  • Domain source blocking (You can block a source by the domain name or
    FQDN that resolves from its IP address.)
  • Malware protection.
  • Web shell protection (Detects and blocks web shells and other
    malicious code from running.)
  • Whitelisting and blacklisting.
  • Advanced false positive prevention (Complete rules contain additional
    advanced code to prevent false positives.)
  • Real time support (False positives are resolved within minutes or
    hours, although they are very rare with the complete rules.)
  • Updates multiple times daily.
Tweet
Share
Share
Email
0 Shares
Read the full article
Related Posts

Server Management: All You Need To Know

Read More »

Key Reasons Why You Should Upgrade Your Email Security Today

Read More »

How to Secure Nginx Against Malicious Bots

Read More »
Knowledge Base

Event Parameters Passed by Event Handlers – WordPress uninstalled

Read More »

Event Parameters Passed by Event Handlers – WordPress installed

Read More »

Event Parameters Passed by Event Handlers – WordPress registered

Read More »

Scanning Server for Malware

Read More »

Hosting Wiki

  • Cross Site Request Forgery (CSRF)
  • PostgreSQL
  • MySQL
  • JavaScript
  • MSSQL
  • SQL
  • Joomla! Toolkit
  • Joomla!
  • Domain
  • WordPress
  • SQL database
  • NoSQL Database
  • IPv6
  • IPv4
  • SIP
  • UDP/IP
  • Firewall
  • SpamAssassin
  • SPAM filter
  • SPAM
  • TCP/IP
  • HTTP
X-twitter Linkedin Youtube Reddit Github
  • Product
  • Login
  • Pricing
  • Editions
  • For Partners
  • Partner Program
  • Contributor Program
  • Affiliate Program
  • Plesk University
  • Company
  • Blog
  • Careers
  • Events
  • About Plesk
  • Our Brand
  • Resources
  • User and Admin guides
  • Help Center
  • Migrate to Plesk
  • Contact Us
  • Hosting Wiki
  • Forum
  • Legal
  • Legal
  • Privacy Policy
  • Imprint

© 2025 WebPros International GmbH

Part of the WebPros®  Family