Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Other sources to convert/bridge (OWASP) #5

Open
drzraf opened this issue Apr 14, 2020 · 0 comments
Open

Other sources to convert/bridge (OWASP) #5

drzraf opened this issue Apr 14, 2020 · 0 comments

Comments

@drzraf
Copy link

drzraf commented Apr 14, 2020

Other free sources from suricata IDS:

WAF:

The later contains things XSS/SQL injection like union select or (\|\| || OR || AND) 1==1
.... and many more which are missing from the current list (but less CMS-specific rules).

Don't you think that supporting/converting rules from owasp-modsecurity-crs would be a nicer long-term strategy. That way new rules provided there could automatically be used by fail2ban?

@drzraf drzraf changed the title Other sources to convert/bridge Other sources to convert/bridge (OWASP) Apr 14, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant