Analyzing Web Server Logs For Intrusion

Parse Apache and Nginx access logs to detect SQL injection attempts, local file inclusion, directory traversal, web scanner fingerprints, and brute-force patterns. Uses regex-based pattern matching against OWASP attack signatures, GeoIP enrichment for source attribution, and statistical anomaly detection for request frequency and response size outliers.

thedixitjain 18dfb66 4 files · 23.1 KB Updated 2 repo stars

File contents

thedixitjain/the-mega-skill-library/tree/main/library/security-and-compliance/analyzing-web-server-logs-for-intrusion commit 18dfb665f6

Frequently asked questions

npx skillmds add thedixitjain/analyzing-web-server-logs-for-intrusion