Elasticsearch - Attacks Data Query

PHOTO EMBED

Mon Jan 03 2022 08:53:53 GMT+0000 (Coordinated Universal Time)

Saved by @codingwithdidem

 {
        "_index" : "waf-2021.11.10",
        "_type" : "_doc",
        "_id" : "jR-CCX0Bw4gto4_NxkwO",
        "_score" : 1.0,
        "_source" : {
          "messages" : [ ],
          "time_stamp" : "Wed Nov 10 14:01:44 2021",
          "host_port" : 80,
          "unique_id" : "1636542104",
          "client_ip" : "127.0.0.1",
          "server_id" : "daf0b44b32986bd0b7af33436cbec117162162da",
          "response" : {
            "body" : "",
            "http_code" : 200,
            "headers" : { }
          },
          "producer" : {
            "modsecurity" : "ModSecurity v3.0.5 (Linux)",
            "secrules_engine" : "Enabled",
            "components" : [
              "OWASP_CRS/3.2.0\""
            ],
            "connector" : "modsec-altosec"
          },
          "host" : "127.0.0.1",
          "@version" : "1",
          "tags" : [
            "_geoip_lookup_failure"
          ],
          "client_port" : 9000,
          "host_ip" : "127.0.0.1",
          "@timestamp" : "2021-11-10T11:01:44.995Z",
          "request" : {
            "uri" : "http://www.kadirerdogan.com.tr//dvwa/js/add_event_listeners.js",
            "body" : "",
            "http_version" : 1.1,
            "headers" : {
              "accept" : "*/*",
              "accept-language" : "en-US,en;q=0.9",
              "referer" : "http://www.kadirerdogan.com.tr/vulnerabilities/fi/?page=include.php",
              "host" : "www.kadirerdogan.com.tr",
              "x-forwarded-for" : "85.98.44.186",
              "cookie" : "PHPSESSID=13b1cf2fcab30151185c5cb90100d9f7; security=medium",
              "user-agent" : "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.131 Safari/537.36",
              "accept-encoding" : "gzip, deflate"
            },
            "method" : "GET"
          },
          "geoip" : { }
        }
      },
content_copyCOPY