ossec clear database

To delete all currently stored alerts and related data in the ossec database execute these commands in

MySQL Editor:

truncate table alert; truncate table data;

Bash Script: #!/usr/local/bin/bash # #Stop ossec, remove old alerts, start ossec

echo “stopping ossec”

/var/ossec/bin/ossec-control stop

Secure Apache ServerTokes and ServerSignature directives

Install OSSEC local on Ubuntu


check your website for vulnerabilities

How do you check your website for vulnerabilities for free?

Check out these sites that provide free vulnerability scans:



fseek() expects parameter 3 to be long os_lib_alerts.php SEEK_SET

to fix this error: fseek() expects parameter 3 to be long os_lib_alerts.php SEEK_SET

Line 842 in os_lib_alerts.php Reads:

fseek($fp, $seek_place, “SEEK_SET”);

It should actually be:

fseek($fp, $seek_place, SEEK_SET);

Detecting Alternate Data Streams

Let’s get started detecting streams (ADS)

What is an stream?

An stream is essentially a hidden file within another file (.txt, .jpg, .mp3, .exe, etc)

Why should I care?

Files can contain malicious streams and compromise your machine

Creating an stream

Open up command prompt and run this in a directory

Secure Scalable Storage Solution

Names You Need To Know in Data Security: Cleversafe


detect php backdoor

how to detect php backdoor ?

(Note content is from http://25yearsofprogramming.com/blog/2010/20100315.htm)

Website security: How to find backdoor PHP shell scripts on a server

This is supplemental information for a series of articles that begins at:

Website security: what to do after your site is hacked, and how to prevent it

how to browse web securely

i just read a great article on how to browse the web securely with his creation of the “Secure Browsing Environment”.

The author shows you how to:

install fail2ban ubuntu 10.10

How to install fail2ban on ubuntu 10.10

Install Fail2ban

# apt-get update # apt-get install fail2ban

List IPtables to see if it is running

# iptables -L

You will see this at bottom of IPTables:

Chain fail2ban-ssh (1 references) target prot opt source destination RETURN all — anywhere anywhere

