Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Post-use evaluation feedback #3320

Open
zhouhao425 opened this issue Jan 6, 2025 · 1 comment
Open

Post-use evaluation feedback #3320

zhouhao425 opened this issue Jan 6, 2025 · 1 comment
Labels
2.x Related to ModSecurity version 2.x

Comments

@zhouhao425
Copy link

Dear ModSecurity Team,

I am a student at Cyber security, and I recently conducted an evaluation of open-source Web Application Firewalls (WAFs) as part of my research. Among the WAFs evaluated, ModSecurity (version 2.9.3) demonstrated strong detection capabilities, particularly in handling various injection attacks. Its flexibility and configurability were impressive.

Based on my findings, I would like to offer a few suggestions for further improvement:

  1. Simplify the rule-writing and configuration process to make it more beginner-friendly, as it currently requires significant expertise.
  2. Develop a more intuitive and visual interface for monitoring logs and managing configurations to enhance user experience.
  3. Improve default settings and rules to provide stronger out-of-the-box protection, particularly for advanced attack scenarios like obfuscated payloads.

Thank you for your continued efforts in developing ModSecurity as a robust WAF solution. I would be happy to share detailed findings from my evaluation if they would be of help.

Best regards,
Lance Zhou

@zhouhao425 zhouhao425 added the 2.x Related to ModSecurity version 2.x label Jan 6, 2025
@airween
Copy link
Member

airween commented Jan 9, 2025

Hi @zhouhao425,

thanks for your suggestions.

For the items:

1: there is a plan to create a new seclang engine, see this wiki page
2: yes, the demand is valid, but at the moment there is no such intention
3: could you explain this item?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
2.x Related to ModSecurity version 2.x
Projects
None yet
Development

No branches or pull requests

2 participants