๐ฆ๐บ
A.i.D.A.N.N
2026-09-20 13:55:40
(39 minutes ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:50:04
(45 minutes ago)
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:49:59.314069 2026] [security2:error] [pid 25932:tid 25996] [client 108.179.252.70:13976] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||annacaird.com.iancaird.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "annacaird.com.iancaird.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq_khzjMZjyT0-meBIGhRQAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nyt
2026-09-20 13:39:35
(55 minutes ago)
Repeated WordPress login POSTs blocked by WAF (3 in 6h)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 12:47:17
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:47:13.409870 2026] [security2:error] [pid 23348:tid 23348] [client 108.179.252.70:10308] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||brushmileage.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "brushmileage.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq_V0fonzY3rgUXKkwYtdwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-20 11:48:56
(2 hours ago)
cloudlinux2 fail2ban: 2026-09-20 13:43:53,385 fail2ban.actions [1597]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-20 13:43:53,385 fail2ban.actions [1597]: NOTICE [plesk-modsecurity] Unban 35.205.202.126cloudlinux2 fail2ban: 2026-09-20 13:44:57,501 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 143.198.8.80 - 2026-09-20 13:44:56cloudlinux2 fail2ban: 2026-09-20 13:45:00,251 fail2ban.filter [1597]: INFO [plesk-modsecurity] Found 108.179.252.70 - 2026-09-20 13:45:00cloudlinux2 fail2ban: 2026-09-20 13:45:00,033 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 108.179.252.70 - 2026-09-20 13:44:59cloudlinux2 fail2ban: 2026-09-20 13:46:20,173 fail2ban.actions [1597]: NOTICE [plesk-modsecurity] Unban 34.176.162.222cloudlinux2 fail2ban: 2026-09-20 13:47:02,906 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 79.26.158.86 - 2026-09-20 13:47:00cloudlinux2 fail2ban: 2026-09-20 13:47:22,367 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 143.110.214.16 - 2026-09-20 13:47:22cloudlinux2 fail2ban: 2026-09-20 13:47:41,63
show less
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 11:45:04
(2 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฌ๐ง
spamverify.com
2026-09-20 11:37:43
(2 hours ago)
Honeypot Hit: WordPress Users
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:35:48
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:35:45.066315 2026] [security2:error] [pid 32301:tid 32301] [client 108.179.252.70:11100] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||karishma.byles.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "karishma.byles.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq_FET1GJeHE2skZyQGUQAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-09-20 11:24:03
(3 hours ago)
Wordfence waf block on pameganslaw
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:20:36
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:20:29.730545 2026] [security2:error] [pid 4728:tid 4728] [client 108.179.252.70:23638] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||guarinofurnituredesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "guarinofurnituredesigns.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq_BfYPAJv8cM8srl3S6lAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 10:52:08
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:52:01.617203 2026] [security2:error] [pid 29488:tid 29488] [client 108.179.252.70:37696] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bostonlog.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bostonlog.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq-60U3iBzp69c0O9o8yyQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-09-20 10:37:34
(3 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
masterguru
2026-09-20 10:34:37
(4 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 108.179.252.70 (BR/Brazil/br526.hostgator.com ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 108.179.252.70 (BR/Brazil/br526.hostgator.com.br): 1 in the last 3600 secs (0-196)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 10:34:28
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:34:22.770840 2026] [security2:error] [pid 14419:tid 14419] [client 108.179.252.70:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cloudex.link|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cloudex.link"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq-2rib8Rckt5voXwsAdWQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 10:19:18
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 108.179.252.70 (br526.hostgator.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:19:13.618695 2026] [security2:error] [pid 15293:tid 15293] [client 108.179.252.70:43082] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ecruhairsalon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ecruhairsalon.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq-zIeXUq2GvV4iReE_kCQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack