Analyzing Web Server Logs For Intrusion

Use when parse Apache and Nginx access logs to detect SQL injection attempts, local file inclusion, directory traversal, web scanner fingerprints, and brute-force patterns. Uses regex-based pattern matching against OWASP attack signatures, GeoIP enrichment for source attribution, and statistical anomaly detection for request frequency and response size outliers. Use when working with analyzing web server logs for intrusion.

oyi77 90a033c 3.8 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/analyzing-web-server-logs-for-intrusion commit 90a033c9aa

Frequently asked questions

npx skillmds add oyi77/analyzing-web-server-logs-for-intrusion