๐ฉ๐ช
FeG Deutschland
2026-06-11 22:06:33
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐ซ๐ท
dynamix
2026-06-11 19:45:40
(1 day ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-06-11 19:32:22
(1 day ago)
463 requests with url.path */wp-includes/wlwmanifest.xml
Brute-Force
Bad Web Bot
๐บ๐ธ
agenciahypelab.com.br
2026-06-11 19:30:46
(1 day ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐ฎ๐ฑ
Dolphi
2026-06-11 12:42:13
(2 days ago)
POST //xmlrpc.php
Brute-Force
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-11 11:15:05
(2 days ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
Anonymous
2026-06-11 11:00:59
(2 days ago)
103.24.13.140 - - [11/Jun/2026:13:00:58 +0200] "POST //xmlrpc.php HTTP/1.1" 200 593 "-" "Mozilla/5.0 ...
show more
103.24.13.140 - - [11/Jun/2026:13:00:58 +0200] "POST //xmlrpc.php HTTP/1.1" 200 593 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
103.24.13.140 - - [11/Jun/2026:13:00:58 +0200] "POST //xmlrpc.php HTTP/1.1" 200 403 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
103.24.13.140 - - [11/Jun/2026:13:00:58 +0200] "POST //xmlrpc.php HTTP/1.1" 200 591 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
103.24.13.140 - - [11/Jun/2026:13:00:59 +0200] "POST //xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
103.24.13.140 - - [11/Jun/2026:13:00:59 +0200] "POST //xmlrpc.php HTTP/1.1" 200 593 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
stinpriza
2026-06-11 10:36:21
(2 days ago)
common Web Exploits being scanned
Web App Attack
๐ง๐ท
dominioz
2026-06-11 10:34:25
(2 days ago)
2026-06-11 10:34:08 GET /wp-includes/wlwmanifest.xml - - 103.24.13.140 HTTP/1.1 Mozilla/5.0+(Windows ...
show more
2026-06-11 10:34:08 GET /wp-includes/wlwmanifest.xml - - 103.24.13.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 1440
2026-06-11 10:34:09 GET /xmlrpc.php rsd - 103.24.13.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 1440
2026-06-11 10:34:09 GET /blog/wp-includes/wlwmanifest.xml - - 103.24.13.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 1440
2026-06-11 10:34:10 GET /web/wp-includes/wlwmanifest.xml - - 103.24.13.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 1440
...
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-11 10:01:53
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
Anonymous
2026-06-11 07:42:30
(2 days ago)
(wordpress) Failed wordpress login from 103.24.13.140 (ID/Indonesia/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-11 07:38:40
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.24.13.140 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.24.13.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 03:38:36.462670 2026] [security2:error] [pid 18420:tid 18420] [client 103.24.13.140:56049] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||evolute.io|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "evolute.io"] [uri "/wp-json/wp/v2/users/"] [unique_id "aipl_Ljl9P6sTICsLbVjjwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 18:25:21
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.24.13.140 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.24.13.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 14:25:12.410247 2026] [security2:error] [pid 7213:tid 7213] [client 103.24.13.140:52982] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.feiz.church|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.feiz.church"] [uri "/wp-json/wp/v2/users/"] [unique_id "aimsCOyLErQK6p8X4tdyAQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2026-06-10 18:24:08
(2 days ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-10 17:01:33
(2 days ago)
High error rate and elevated request volume targeting cPanel servers
Bad Web Bot