You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The later contains things XSS/SQL injection like union select or (\|\| || OR || AND) 1==1
.... and many more which are missing from the current list (but less CMS-specific rules).
Don't you think that supporting/converting rules from owasp-modsecurity-crs would be a nicer long-term strategy. That way new rules provided there could automatically be used by fail2ban?
The text was updated successfully, but these errors were encountered:
drzraf
changed the title
Other sources to convert/bridge
Other sources to convert/bridge (OWASP)
Apr 14, 2020
Other free sources from suricata IDS:
WAF:
The later contains things XSS/SQL injection like
union select
or(\|\| || OR || AND) 1==1
.... and many more which are missing from the current list (but less CMS-specific rules).
Don't you think that supporting/converting rules from
owasp-modsecurity-crs
would be a nicer long-term strategy. That way new rules provided there could automatically be used by fail2ban?The text was updated successfully, but these errors were encountered: