Learning Logs

Sharing our logging knowledge. A place we log our insights, experiences, and findings as it pertains to the world of logs.

Articles

Latest Articles

Oct 13, 2022
Tony Perez (@perezbox)
The Importance of Remote Logging

This article explains why it is important to include remote logging as a piece of your log management strategy.

Oct 13, 2022
Daniel Cid (@dcid)
SQL Injection Attack Log

Trunc provides a list of SQLi attacks in the wild. Honeypots records over 900 SQL injection attempts.

Oct 13, 2022
Daniel Cid (@dcid)
Linux read-only filesystem errors

Critical logs to watch: Alerting on read-only filesystem errors

Oct 13, 2022
Daniel Cid (@dcid)
A Guide to: PHP Fatal errors

Some logs require immediate response to prevent a breach or to recover a broken system. Today's critical logs are the PHP fatal errors.

Oct 13, 2022
Tony Perez (@perezbox)
Web Interface for OSSEC

The OSSEC HIDS platform is a popular log collection and analysis platform, this article shows how you can implement a web interface for the OSSEC platform.

Oct 13, 2022
Tony Perez (@perezbox)
OSSEC Log Analysis

OSSEC Log Analysis - How to get your OSSEC logs into a centralized dashboard in the cloud.

Oct 13, 2022
Daniel Cid (@dcid)
A Guide to: Office 365 Microsoft Exchange Logs

Microsoft Office365 (Azure-based) offers a very powerful audit trail of Exchange email logs. In this guide, we will explain how they look like and what to take from them.

Oct 13, 2022
Tony Perez (@perezbox)
The Issues and Challenges with Log Management

Log management is difficult because of the shear scope of devices that need to be monitored.

Oct 13, 2022
Daniel Cid (@dcid)
Log Analysis: Investigating a Hacked Linode server

Investigating and recovering a compromised Linode server running WordPress and latest Ubuntu.

Oct 13, 2022
Daniel Cid (@dcid)
A Log Guide to: HTTP User Agents

HTTP User agents are a big part of how browsers and web servers communicate. In this article, we cover what they are and the most common user agents.

Oct 13, 2022
Daniel Cid (@dcid)
Log Analysis: HTTP Flood - DDoS analyzed

Analysis of a HTTP Flood - DDoS - that happened against a site that we were monitoring.

Oct 13, 2022
Daniel Cid (@dcid)
A Guide to: NGINX Error Logs

Everything you probably don't need to know about NGINX error logs.

Simple, Affordable, Log Management and Analysis.

14 days free trial. No credit card required.