With the development of big data and information and communication technologies through the development of the 4th industry, the scope of Internet use has expanded. In addition, the spread of remote work servers to introduce telecommuting has increase...
With the development of big data and information and communication technologies through the development of the 4th industry, the scope of Internet use has expanded. In addition, the spread of remote work servers to introduce telecommuting has increased due to the port of COVID-19. In recent years, not only companies but also individually, various uses have increased through home server construction.
Attacks against web servers have increased significantly, and it is important to respond to and manage malicious behavior by analyzing based on big data logs.
In this paper, big data weblogs are parsed through regular expressions in the first data purification process, encoded data are decoded to increase attack detection rate, and abnormal behavior is analyzed quickly through multiprocessing and docker containers. The diagram is derived by performing visualization through the final Elastic Search and Kibana.