๐ต๐ฑ
Budyn
2026-10-07 12:31:41
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: sql.teddypot.online | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-10-04 04:01:57
(4 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: beta.goblinpot.tech | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-10-02 03:18:16
(6 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: shop.definitelynotahoneypot.top | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-30 18:12:16
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: beta.budyn.xyz | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-23 13:30:20
(2 weeks ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: s3.sweetpuddingtrap.online | URI: /backup.sql | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-08 15:19:05
(1 month ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: ldap.dont-eat-the-pudding.xyz | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-02 06:17:52
(1 month ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: backup.sweetpuddingtrap.xyz | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-01 18:00:06
(1 month ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ต๐ฑ
Budyn
2026-08-23 06:33:31
(1 month ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: vault.definitelynotahoneypot.online | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-08-07 14:16:03
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 18779 (EGIHo ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 18779 (EGIHosting)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-08-07T12:38:39Z
Ray ID: a27656ef2a36c8de
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฎ๐น
Progetto1
2026-07-24 20:10:04
(2 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
MPL
2026-07-24 07:06:24
(2 months ago)
tcp/443 (4 or more attempts)
Port Scan
๐ท๐บ
andrey volobuev
2026-06-29 06:32:25
(3 months ago)
[29/Jun/2026:09:32:22 +0300] - 404 404 - GET https ss-dev.bebesh.ru "/superset/explore/p" [Client 10 ...
show more
[29/Jun/2026:09:32:22 +0300] - 404 404 - GET https ss-dev.bebesh.ru "/superset/explore/p" [Client 104.164.173.160] [Length 334] [Gzip -] [Sent-to ss-dev.lan] "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36" "-"
[29/Jun/2026:09:32:23 +0300] - - 301 - GET http ss-dev.bebesh.ru "/sqllab/?new=true" [Client 104.164.173.160] [Length 166] [Gzip -] [Sent-to ss-dev.lan] "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36" "-"
[29/Jun/2026:09:32:24 +0300] - - 301 - GET http ss-dev.bebesh.ru "/rowlevelsecurity/list/" [Client 104.164.173.160] [Length 166] [Gzip -] [Sent-to ss-dev.lan] "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36" "-"
[29/Jun/2026:09:32:24 +0300] - - 403 - GET https ss-dev.bebesh.ru "/login/?next=http://ss-dev.bebesh.ru/alert/list/" [Client 104.164.173.160] [Length 182] [Gzip 3.23] [Sent-to ss-dev.lan] "Mozilla/5.0 (X11;
...
show less
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-06-22 04:55:03
(3 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ณ๐ด
Bots.go.to.hell
2026-06-01 02:23:22
(4 months ago)
This IP was detected by CrowdSec triggering custom/http-range-ban
Web App Attack
Port Scan