Anonymous
2026-08-21 19:46:11
(1 day ago)
Failed Wordpress Logins
Web App Attack
Anonymous
2026-08-11 02:46:07
(1 week ago)
Failed Wordpress Logins
Web App Attack
Anonymous
2026-08-06 19:16:03
(2 weeks ago)
Failed Wordpress Logins
Web App Attack
Anonymous
2026-08-05 17:46:12
(2 weeks ago)
Failed Wordpress Logins
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-05 11:15:45
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
NicoID
2026-08-05 03:35:37
(2 weeks ago)
109.176.196.94 - - [04/Aug/2026:08:55:11 -0600] "GET /wp-login.php HTTP/2.0" 200 2374 "-" "Mozilla/5 ...
show more
109.176.196.94 - - [04/Aug/2026:08:55:11 -0600] "GET /wp-login.php HTTP/2.0" 200 2374 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.0.0 Safari/537.36"
...
show less
Brute-Force
๐ฉ๐ช
neckaralb-admin.de
2026-08-04 11:44:15
(2 weeks ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฎ๐น
IRT@Unisi
2026-08-04 07:37:27
(2 weeks ago)
Multiple web server 400 error codes from same source ip.
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-04 07:31:35
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 04 03:31:28.923081 2026] [security2:error] [pid 3391078:tid 3391078] [client 109.176.196.94:33612] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||drjasonkolber.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "drjasonkolber.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anGVUB8KtJ7tf_4_5-sHdwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-04 06:14:55
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 04 02:14:49.026290 2026] [security2:error] [pid 760301:tid 760301] [client 109.176.196.94:43114] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||joevallone.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "joevallone.com"] [uri "/index.php/wp-json/wp/v2/users"] [unique_id "anGDWS9a2E4AXtEnfpPsAwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ณ
evicky2002
2026-08-04 06:00:00
(2 weeks ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฒ๐ฝ
octageeks.com
2026-08-04 04:20:29
(2 weeks ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
๐ฉ๐ช
Phenix Info
2026-08-04 01:59:43
(2 weeks ago)
SmallGuard.fr - HoneyPot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-04 01:07:53
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 21:07:44.265670 2026] [security2:error] [pid 1081918:tid 1081918] [client 109.176.196.94:46958] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||healingworksmassage.studio|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "healingworksmassage.studio"] [uri "/index.php/wp-json/wp/v2/users"] [unique_id "anE7YCqAoqEfNmemsqgv2wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-03 23:05:54
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 109.176.196.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 19:05:39.331005 2026] [security2:error] [pid 3159833:tid 3159839] [client 109.176.196.94:31484] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ward-bergerhouse.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ward-bergerhouse.org"] [uri "/wp-json/wp/v2/users"] [unique_id "anEewxc4cX_OAUCmV3cQiAAAAQM"]
show less
Brute-Force
Bad Web Bot
Web App Attack