Analyzing Web Server Logs For Intrusion

Parse Apache and Nginx access logs to detect SQL injection attempts, local file inclusion, directory traversal, web scanner fingerprints, and brute-force patterns. Uses regex-based pattern matching against OWASP attack signatures, GeoIP enrichment for source attribution, and statistical anomaly detection for request frequency and response size outliers.

gabrielmoreira Updated 17 repo stars

File contents

gabrielmoreira/agent-skills-mirror/tree/main/mirrors/repos/xalgord@xalgorix/internal/tools/skills/data/security-operations/analyzing-web-server-logs-for-intrusion commit 79c421fae2

Frequently asked questions

npx skillmds@latest add gabrielmoreira/analyzing-web-server-logs-for-intrusion