New Tool: Daily [Mod] Security Reports

Posted 1273 days ago - Development, Security

After the Lighttpd mod security post and the DDoS attack that followed, I began working on a script that parses the Lighttpd server-error.log and inserts matched records into MySQL. The result? Check it out here: security.nullamatix.com Daily Security Reports. With the abundance of ideas I have for the project, it's far from complete, but definitely worth a beta release. Plans for the future include, but aren't limited to:

  1. SSL Certificate for https support
  2. An API to enable client submissions
  3. Details information about individual IPs (blacklists, rDNS, ASN, db frequency, etc)
  4. Auto generated links to ProjectHoneyPot, Robtex, Stop Forum Spam, and more
  5. Get the search working correctly
  6. Discussion/comment form on each IP to enable visitor interaction
  7. Auto generated IP tables/null route rules for IPs/netblocks

So, as I said, the tool is far from complete, and I need your help. What sort of features would you like to see? Could the tool eventually have a value to the Internet community, or just me? Don't be shy - leave your comments, suggestions, criticisms, or questions below.

Also, WordPress users that like to know about the source of their commentators should check out my first official WordPress plug-in: IP Intelligence.

Merry Chrimmus and eehh... bah-hum-bug.

Word Count: 262

Tags: , , , , , ,

Click Here to Submit a Comment

Permalink / Last Modified:

Support Nullamatix.com:

See Also:

  • 12/10/2009 -- 529 Attacks in 9 Days: id1.txt, RFI, & More
    Excerpt: "Long time Nullamatix readers know how much I love reviewing log files. Logs can provide detailed incite into not only the overall health of a system, but information one can use to mitigate the risks of automated attacks. In this post, I'll go over a couple ..."
  • 04/24/2009 -- New Page: Interesting Server Logs
    Excerpt: "This is a short post. A status update more than anything. Before posting Madlib Site PHP code examples demonstrating how to use the content you've obtained from: Free Data Sources for Blue Hat SEO's Madlib Technique, I thought of a potentially interesting ..."
  • 04/11/2010 -- Howto: XCache in a Lighttpd Chroot on Debian
    Excerpt: "Whether you're pressed for resources on a virtual/dedicated server, or simply looking for ways to improve web application performance, XCache is guaranteed to produce the desired result. Within minutes of installing XCache: page load times were cut in half, ..."
  • 12/26/2009 -- WordPress Hacks Worth Implementing
    Excerpt: "Combat Comment Spam Most spammers aren't clever enough to populate the REFERER header. This code snippet is not only extremely easy to implement, but pretty effective, too. Open up your themes functions.php and drop in the following: function ..."

Leave a Reply