Hi,
I spoke to mistwang about a better and more detailed log system for this, I just wanted to see if it's on the todo list yet and how what it's time frame is.
this is what I'm speaking of to be more clear:
logs/error.log <==
2007-11-16 16:11:15.828 [NOTICE] [xx.146.185.194:2981-0#site] [SECURITY] Detected [PATTERN: 'or.+1[[:space:]]*=[[:space:]]1|or 1=1--'|'.+--'] [Msg: SQL Injection attack]
I'd like to know what exactly was sent in the POST/GET, which php file that parsed it OR atleast the url would be enough as a start to know what they are "attacking".
thanks
I spoke to mistwang about a better and more detailed log system for this, I just wanted to see if it's on the todo list yet and how what it's time frame is.
this is what I'm speaking of to be more clear:
logs/error.log <==
2007-11-16 16:11:15.828 [NOTICE] [xx.146.185.194:2981-0#site] [SECURITY] Detected [PATTERN: 'or.+1[[:space:]]*=[[:space:]]1|or 1=1--'|'.+--'] [Msg: SQL Injection attack]
I'd like to know what exactly was sent in the POST/GET, which php file that parsed it OR atleast the url would be enough as a start to know what they are "attacking".
thanks