Table of Contents
Overview #
The Security Logs feature provides comprehensive logging and monitoring of all security events on your WordPress website.
Types of Security Events #
Threat Detection Events #
- SQL Injection Attempts: Malicious database queries
- XSS Attacks: Cross-site scripting attempts
- File Inclusion Attacks: Attempts to include malicious files
- Brute Force Attacks: Password guessing attempts
- Malware Detection: Malicious code discoveries
Administrative Events #
- User Logins: Administrator and user login activities
- Password Changes: Password reset and change events
- User Registration: New user account creations
- Plugin Activities: Plugin installations, activations, deactivations
- Theme Changes: Theme switches and modifications
System Events #
- File Modifications: Changes to critical WordPress files
- Configuration Changes: Security setting modifications
- WordPress Updates: Core, plugin, and theme updates
- Database Changes: Important database modifications
Security Logs Interface #
Log Viewer #
The main logs interface displays:
- Timestamp: When the event occurred
- Event Type: Category of security event
- IP Address: Source IP of the event
- Description: Detailed event description
- Action Taken: How the system responded
- Severity Level: Critical, High, Medium, Low
Filtering Options #
Filter logs by:
- Date Range: Specific time periods
- Event Type: Specific categories of events
- IP Address: Events from specific IPs
- Severity Level: Filter by threat level
- Action Taken: Filter by system response
Search Functionality #
- Keyword Search: Search event descriptions
- IP Search: Find all events from specific IPs
- User Search: Find events by username
- Advanced Filters: Combine multiple search criteria
Using Security Logs #
Daily Monitoring #
- Access Logs: Go to Zxeion Security → Logs
- Review Recent Events: Check last 24 hours of activity
- Identify Patterns: Look for repeated attacks or suspicious activity
- Take Action: Block problematic IPs or adjust security settings
Incident Investigation #
- Filter by Time: Narrow down to incident timeframe
- Search by IP: Track all activity from suspicious IPs
- Analyze Patterns: Look for attack sequences or methods
- Document Findings: Export logs for further analysis
Compliance Reporting #
- Generate Reports: Export logs for compliance requirements
- Filter by Criteria: Focus on specific types of events
- Format Options: CSV, PDF, or email reports
- Schedule Reports: Automated daily/weekly/monthly reports
Log Management #
Export Options #
- CSV Export: Spreadsheet-compatible format
- PDF Reports: Professional formatted reports
- Email Reports: Automated email delivery
- Raw Data: JSON format for technical analysis
Log Retention #
- Default Retention: 90 days of log storage
- Automatic Cleanup: Old logs automatically removed
- Manual Cleanup: Option to clear logs manually
- Export Before Cleanup: Save important logs before deletion
Storage Management #
- Database Storage: Logs stored in WordPress database
- Size Monitoring: Track log storage usage
- Performance Impact: Minimal impact on site performance
- Optimization: Automatic database optimization