title: Django framework exceptions description: Detects suspicious Django web application framework exceptions that could indicate exploitation attempts author: Thomas Patzke references: - https://docs.djangoproject.com/en/1.11/ref/exceptions/ - https://docs.djangoproject.com/en/1.11/topics/logging/#django-security logsource: category: application product: django detection: keywords: - SuspiciousOperation # Subclasses of SuspiciousOperation - DisallowedHost - DisallowedModelAdminLookup - DisallowedModelAdminToField - DisallowedRedirect - InvalidSessionKey - RequestDataTooBig - SuspiciousFileOperation - SuspiciousMultipartForm - SuspiciousSession - TooManyFieldsSent # Further security-related exceptions - PermissionDenied condition: keywords falsepositives: - Application bugs - Penetration testing level: medium