diff --git a/owasp-top10-2021-apps/a9/games-irados/app/routes.py b/owasp-top10-2021-apps/a9/games-irados/app/routes.py index eddd6a999..fbee6d319 100644 --- a/owasp-top10-2021-apps/a9/games-irados/app/routes.py +++ b/owasp-top10-2021-apps/a9/games-irados/app/routes.py @@ -77,8 +77,10 @@ def login(): psw = Password(request.form.get('password').encode('utf-8')) user_password, success = database.get_user_password(username) if not success or user_password == None or not psw.validate_password(str(user_password[0])): + logging.warning("Failed login attempt for user %s from IP %s", username, request.remote_addr) flash("Usuario ou senha incorretos", "danger") return render_template('login.html') + logging.info("Successful login for user %s from IP %s", username, request.remote_addr) session['username'] = username return redirect('/home') else: