Django-MOJO
MarkdownOpen in ClaudeOpen in ChatGPT

1.15.15 — MojoSec auth/host correlation, campaigns, and the blocking lifecycle

Editorial identity incomplete

2026-08-21

MojoSec now correlates SSH, sudo, and service/OOM evidence into per-node cases (an SSH failure burst followed by a success from the same address pages critical), coalesces distributed scanners into one campaign per tenant group, and owns all automatic MojoSec-driven IP blocking through a bounded recommendation → approval → execution lifecycle with validated targets, TTL-only blocks, honest applied-vs-pre-existing outcomes, and operator reversal. Everything is opt-in per installation; automatic execution is off by default and capped at one validated IP.

Added

Changed

Fixed

Security

Upgrade notes