๐บ๐ธ
TPI-Abuse
2026-08-28 07:07:50
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:07:42.116289 2026] [security2:error] [pid 6396:tid 6396] [client 106.0.62.85:42074] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||k2servicesinc.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "k2servicesinc.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apEzvobKySRV3vDiJnkXsAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-28 01:25:03
(7 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-28 00:14:22
(8 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
tecnicorioja
2026-08-27 22:00:34
(10 hours ago)
wp-login attack [27/Aug/2026:10:04:11
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:14:28
(16 hours ago)
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:14:21.849077 2026] [security2:error] [pid 19182:tid 19182] [client 106.0.62.85:43774] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jessicalevant.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jessicalevant.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apBiXWcOPWxM2bvFb7LlQwAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 14:26:57
(18 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐น๐ท
oalver
2026-08-27 13:27:30
(19 hours ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /wp-login.php (HTTP 200). First seen: 2026-08-27. Risk score: 30/100.
show less
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-08-27 10:24:04
(22 hours ago)
Wordfence waf block on registrymatters
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-27 04:33:26
(1 day ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐จ๐ฟ
ptlab
2026-08-27 00:45:09
(1 day ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 15:32:39
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 11:32:33.769038 2026] [security2:error] [pid 20081:tid 20081] [client 106.0.62.85:41664] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hopeforthefuture.africa.greenlight.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hopeforthefuture.africa.greenlight.us"] [uri "/wp-json/wp/v2/users"] [unique_id "ao8HEbEKYlhQPCEFmVJgOwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 13:47:16
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:47:09.218128 2026] [security2:error] [pid 15296:tid 15296] [client 106.0.62.85:43554] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fusionrep.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fusionrep.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ao7uXdLQWgwfmUdkiF8zCgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-26 10:37:24
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 05:49:27
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 106.0.62.85 (az1-ts113.a2hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 01:49:20.096666 2026] [security2:error] [pid 20637:tid 20637] [client 106.0.62.85:37254] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rohanbyles.com.au|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rohanbyles.com.au"] [uri "/wp-json/wp/v2/users"] [unique_id "ao5-YMmq6uTwh8baniVRtAAAAIs"], referer: https://rohanbyles.com.au/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-26 02:15:38
(2 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack