Learning Logs

Sharing our logging knowledge. A place we log our insights, experiences, and findings as it pertains to the world of logs.

Articles

Latest Articles

Oct 13, 2022
Daniel Cid (@dcid)
SQL Injection Attack Log

Trunc provides a list of SQLi attacks in the wild. Honeypots records over 900 SQL injection attempts.

Oct 13, 2022
Daniel Cid (@dcid)
Linux read-only filesystem errors

Critical logs to watch: Alerting on read-only filesystem errors

Oct 13, 2022
Daniel Cid (@dcid)
A Guide to: PHP Fatal errors

Some logs require immediate response to prevent a breach or to recover a broken system. Today's critical logs are the PHP fatal errors.

Oct 13, 2022
Tony Perez (@perezbox)
Web Interface for OSSEC

The OSSEC HIDS platform is a popular log collection and analysis platform, this article shows how you can implement a web interface for the OSSEC platform.

Oct 13, 2022
Tony Perez (@perezbox)
OSSEC Log Analysis

OSSEC Log Analysis - How to get your OSSEC logs into a centralized dashboard in the cloud.

Oct 13, 2022
Daniel Cid (@dcid)
A Guide to: Office 365 Microsoft Exchange Logs

Microsoft Office365 (Azure-based) offers a very powerful audit trail of Exchange email logs. In this guide, we will explain how they look like and what to take from them.

Oct 13, 2022
Tony Perez (@perezbox)
The Issues and Challenges with Log Management

Log management is difficult because of the shear scope of devices that need to be monitored.

Oct 13, 2022
Daniel Cid (@dcid)
Log Analysis: Investigating a Hacked Linode server

Investigating and recovering a compromised Linode server running WordPress and latest Ubuntu.

Oct 13, 2022
Daniel Cid (@dcid)
A Log Guide to: HTTP User Agents

HTTP User agents are a big part of how browsers and web servers communicate. In this article, we cover what they are and the most common user agents.

Oct 13, 2022
Daniel Cid (@dcid)
Log Analysis: HTTP Flood - DDoS analyzed

Analysis of a HTTP Flood - DDoS - that happened against a site that we were monitoring.

Oct 13, 2022
Daniel Cid (@dcid)
A Guide to: NGINX Error Logs

Everything you probably don't need to know about NGINX error logs.

Oct 13, 2022
Daniel Cid (@dcid)
A Log Guide to: Dropbear Logs

Understanding the logs from Dropbear, a SSH server meant for low memory systems. Useful to understand the logs from your routers, including OpenWrt, Ubiquiti, Unifi, etc.

Simple, Affordable, Log Management and Analysis.

14 days free trial. No credit card required.