Inbound Anomaly Score Exceeded being faced for most calls on a subdomain

What is the name of the domain?

example.ai

What is the error message?

403 error to the inbound calls with Inbound Anomaly Score Exceeded

What is the issue you’re encountering

We are facing a lot of 403 errors on Managed Rule set with inbound anomaly score exceeded suddenly from the past 1 week. This error has increased a lot after the downtime incident that occured on 12th June. Want to understand why so many blocks are triggered. We never faced this issue before.

What steps have you taken to resolve the issue?

I tried changing the severity and the Paranoia levels and Threshold for this, but I am still facing the 403s. These were not occuring before and have started recently and mostly after the downtime incident on June 12th 2025. I am also unable to get the exact rules that are a problem so we could debug the payload.

This topic was automatically closed 15 days after the last reply. New replies are no longer allowed.