Post by pixacor » Tue Oct 22, 2024 1:28 am

Hello all. 3.0.3.7

Is there an extension or some built in option that better monitors for odd behavior by a user?

Example:
Today I have a user going through files that do not make sense to go to. (Or attempting to load them. back side files, etc). This same IP also was trying to inject things via a contact form.

I was able to block the user (IP) and monitoring now for a reoccurrence with a new IP. But there in lies the question above. What is the best way to monitor this? I can stare at the online activity and scroll through looking for odd loading. But I would rather make it a bit easier if possible.

Thanks for any tips.

New member

Posts

Joined
Mon Jul 29, 2019 12:55 am

Post by johnp » Tue Oct 22, 2024 2:53 am

pixacor wrote:
Tue Oct 22, 2024 1:28 am
Hello all. 3.0.3.7

Is there an extension or some built in option that better monitors for odd behavior by a user?

Example:
Today I have a user going through files that do not make sense to go to. (Or attempting to load them. back side files, etc). This same IP also was trying to inject things via a contact form.

I was able to block the user (IP) and monitoring now for a reoccurrence with a new IP. But there in lies the question above. What is the best way to monitor this? I can stare at the online activity and scroll through looking for odd loading. But I would rather make it a bit easier if possible.

Thanks for any tips.
I would put Ninja Firewall on for starters:

https://nintechnet.com/ninjafirewall/pro-edition

The free version is fine.
Last edited by johnp on Tue Oct 22, 2024 10:50 pm, edited 1 time in total.

Opencart 1.5.6.5/OC Bootstrap Pro/VQMOD lover, user and geek.
Affordable Service £££ - Opencart Installs, Fixing, Development and Upgrades
Plus Ecommerce, Marketing, Mailing List Management and More
FREE Guidance and Advice at https://www.ecommerce-help.co.uk


User avatar
Active Member

Posts

Joined
Fri Mar 25, 2011 10:25 am
Location - Surrey, UK

Post by JNeuhoff » Tue Oct 22, 2024 5:49 pm

If you are dealing with spambots trying to do fake registrations then you could try the SpamBot Buster which repels spambots quite effectively.

Export/Import Tool * SpamBot Buster * Unused Images Manager * Instant Option Price Calculator * Number Option * Google Tag Manager * Survey Plus * OpenTwig


User avatar
Guru Member

Posts

Joined
Wed Dec 05, 2007 3:38 am


Post by paulfeakins » Tue Oct 22, 2024 6:12 pm

pixacor wrote:
Tue Oct 22, 2024 1:28 am
Is there an extension or some built in option that better monitors for odd behavior by a user?
You mean front-end browsing? Server tools like Immunify and ModSecurity are designed for this purpose but I don't really like them myself as they have too many false positives.

pixacor wrote:
Tue Oct 22, 2024 1:28 am
Example:
Today I have a user going through files that do not make sense to go to. (Or attempting to load them. back side files, etc). This same IP also was trying to inject things via a contact form.
The above tools would help prevent SQL injection attempts.

You could also consider a one of our OpenCart Health Checks.

UK OpenCart Hosting | OpenCart Audits | OpenCart Support - please email info@antropy.co.uk


User avatar
Legendary Member

Posts

Joined
Mon Aug 22, 2011 11:01 pm
Location - London Gatwick, United Kingdom

Post by nonnedelectari » Tue Oct 22, 2024 8:27 pm

pixacor wrote:
Tue Oct 22, 2024 1:28 am
Hello all. 3.0.3.7

Is there an extension or some built in option that better monitors for odd behavior by a user?

Example:
Today I have a user going through files that do not make sense to go to. (Or attempting to load them. back side files, etc). This same IP also was trying to inject things via a contact form.

I was able to block the user (IP) and monitoring now for a reoccurrence with a new IP. But there in lies the question above. What is the best way to monitor this? I can stare at the online activity and scroll through looking for odd loading. But I would rather make it a bit easier if possible.

Thanks for any tips.
You will always see "suspicious behaviour", as long as your back-end, front-end and installed extensions are secure, that is all it is.

Active Member

Posts

Joined
Thu Mar 04, 2021 6:34 pm
Who is online

Users browsing this forum: Amazon [Bot] and 15 guests