Had two attacks this week on different WordPress sites. One seems like a DDoS and the other an enumeration attack. Fail2Ban stopped both by quickly adding new jails.

Was ist denn gerade mit dem Internetz los?

Der #Fail2Ban fischt eigentlich nur noch SQL Injections raus...

Etliche am Tag.

Bis vor kurzem waren das mal einer in der Woche...

hello ! j'suis en train de set up mon serveur sur yunohost et j'aurais besoins d'aide sur 2 choses :

- je vais en autre héberger un site public. Comment je fais pour éviter les scrapers IA ? Est ce qu'il y a un truc à faire avec NGINX ou fail2ban ? Au moins pour bloquer le gros du soucis quoi :((

- j'ai un SSD où j'ai installé yunohost et j'ai installé un disque dur. Pour l'instant y'a rien dessus, y'a une partition vide en ext4. J'ai vu ce
tuto qui est très clair mais j'aimerai des précisions sur les dossiers. En fait j'aimerai que mes app se lancent sur le SSD (pour bénéficier de la vitesse, etc) mais que les médias (par exemple pour un serveur xmpp, ou un partage de fichier) soit sur le disque dur. Sur le tuto je vois qu'iels parlent de "/home/yunohost.app" pour les "Données lourdes des applications YunoHost " et de "/home/yunohost.multimedia" pour "Données lourdes partagées entre plusieurs applications", mais ça reste flou pour moi

Si des personnes peuvent m'éclairer, aider ou guider je vous en serrais très reconnaissant !!! MERCI


#yunohost #autoHebergement #selfHost #nginx #fail2ban #aiscraper #aicrawler
Ajouter un stockage externe à son serveur | Yunohost

Introduction

Version 1.2.5 of the security plugin for WordPress, Fail2WP, has been released with fixes, more fine-grained control, and compatibility with PHP 7.4-8.4

wordpress.org: https://wordpress.org/plugins/fail2wp
github: https://github.com/joho1968/Fail2WP

#wordpress #wordpressplugin #devops #cybersec #itsec #infosec #fail2ban #oss #foss #opensource

Fail2WP

Security plugin for WordPress with support for fail2ban. Tested with WordPress 5.5+ and PHP 7.4-8.4

WordPress.org

@ShortN0te @john_t

It's not really adding security; but it keeps your logs less "noisy" 🤩 Use #fail2ban to block those brute-force attackers trying to login with a password. And do only allow login #ssh with a #key !

There's been an uptick in script kiddies and bots with the Subjam reverse proxy and primary mailservers lately. Not huge, but a couple hundred more on average (IP ban time is currently 48h).

fail2ban is nice to keep them at bay. It's one of many tools a good Linux or BSD network/sysadmin has in their toolbelt.

#fail2ban #cybersecurity #linux #selfhosted

¿Qué tan bien configurado tenés tu #Fail2ban? 🛡🐧

Añadimos tres cuestionarios interactivos dentro del último video en nuestro canal de YouTube, para que pongas a prueba tus conocimientos sobre Fail2ban:

✅ El funcionamiento de los IPS
✅ La lógica de findtime y maxretry
✅ Buenas prácticas con archivos .local

¿Te animás a responder y demostrar que sos un experto en seguridad GNU/Linux?🤓

👇Mirá el video y encontrá los quizes acá:

https://youtu.be/_bFjaff_YDk

#Linux #JuncoTIC #Cibersegurid #infosec

Fail2ban para proteger nuestro servidor de #SSH (y mucho más) #linux

YouTube
Backing up things is pretty standard / low stakes.

But I just noticed that virtually ALL the apps on my #YunoHost system have available updates, which means... the hair-raising, palpitations-inducing, let's say a little prayer practice of creating a snapshot of my VPS (easy peasy) and clicking on "Upgrade" by order of importance.

#Fail2Ban and #LinkStack were pretty low stakes - done, no sweat. Plus I love how YunoHost creates backups before upgrading, so you can always revert back if something goes wrong.

Anyway, Pixelfed now and then my sacred triad of GoToSocial, NextCloud and PeerTube.

Wish me luck! 🥵​

EDIT: newbie me is more advanced than even I would think so... I'm checking out GitHub's YunoHost page for each app I want to upgrade. Apparently the Pixelfed package has issues so I'm not touching that 😅​

Reference: https://github.com/YunoHost-Apps/pixelfed_ynh/issues

Now checking out the other apps...

#MySoCalledSudoLife #SelfHosting
YunoHost-Apps/pixelfed_ynh

The federated image shareing service Pixelfed for YunoHost - YunoHost-Apps/pixelfed_ynh

GitHub
Good morning Fedi friends!

Monday mornings mean: my weekly ritual of manually backing up my #YunoHost installation (my VPS does automatic daily backups of the whole VPS, but I say: better safe than sorry).

This latest backup is pretty big, because of my increased use of #NextCloud. So in reverse order, from biggest to smallest we have:

1) #GoToSocial : 5.8 GB
2) #PeerTube : 4.3 GB
3) #NextCloud: 3.7 GB
4) #Pixelfed : 1.6 GB
5) #LinkStack : 92 MB
6) #Fail2Ban : 362kb

Happy #selfhosting everyone! And in case you missed it, my self-hosting guide for newbies via YunoHost is available here: https://blog.elenarossini.com/a-newbies-guide-to-self-hosting-with-yunohost/ (with 4 articles so far).

Have a great week everyone!

#MySoCalledSudoLife
A newbie's guide to self-hosting with YunoHost

Here is a 4-part guide about how to get started self-hosting essential internet services with the YunoHost system

Elena Rossini

Installing Fail2Ban With NextCloud In Six Clicks

Make things more secure in just a few minutes.


https://ideatrash.net/2026/02/installing-fail2ban-with-nextcloud-in-six-clicks.html#internet #security #technology #docker #fail2ban #nextcloud