Analyze Linux system logs to identify security events and suspicious activity.
sudo tail -50 /var/log/auth.log
sudo grep 'Failed password' /var/log/auth.log | awk '{print $(NF-3)}' | sort | uniq -c | sort -rn
awk -F: '$3 == 0 {print $1}' /etc/passwd
sudo find /etc -mtime -1 -type f
sudo ufw deny from 10.0.0.55
sudo ufw status numbered
How would you automate this process to run every 5 minutes?