๐จ๐ฆ
polycoda
2026-08-31 10:35:34
(1 day ago)
AutoBlock: ๐ WordPress Login Brute Force (20X or 30X) (Decay-Based) - โ Excessive 40X Errors (Decay- ...
show more
AutoBlock: ๐ WordPress Login Brute Force (20X or 30X) (Decay-Based) - โ Excessive 40X Errors (Decay-Based) - โช๏ธ Excessive 30X Errors (Decay-Based)
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-31 04:14:24
(1 day ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 00:40:35
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 20:40:31.894328 2026] [security2:error] [pid 952:tid 952] [client 118.99.73.75:32162] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mchen-arch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mchen-arch.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apTNfw_dyHxneOfSctHTwQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 00:22:16
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 20:22:10.098645 2026] [security2:error] [pid 11149:tid 11149] [client 118.99.73.75:31582] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||diamondtrailerserv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "diamondtrailerserv.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apTJMlBgVX_Nxa6JeEdv3QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 00:10:37
(1 day ago)
WordPress Brute Force
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 00:03:18
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 20:03:14.419305 2026] [security2:error] [pid 20342:tid 20342] [client 118.99.73.75:30072] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rockinr.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rockinr.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apTEwgj2hyPuFMvixVW5xQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-30 23:45:56
(1 day ago)
Web attack blocked by Wordfence on mergel.nu (1 hit). Reported by CRMON.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 23:45:19
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 19:45:11.293186 2026] [security2:error] [pid 20986:tid 20986] [client 118.99.73.75:34121] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kairoslogammakmur.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kairoslogammakmur.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apTAh4cirEqR7mPEbd3N1AAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
thesimonmanuel
2026-08-30 23:29:46
(1 day ago)
118.99.73.75 - 19830pwpadmin [31/Aug/2026:04:59:45 +0530] "GET /wp-json/wp/v2/users/me HTTP/1.1" 401 ...
show more
118.99.73.75 - 19830pwpadmin [31/Aug/2026:04:59:45 +0530] "GET /wp-json/wp/v2/users/me HTTP/1.1" 401 107 "-" "118.99.73.75"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 23:22:24
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 19:22:18.093648 2026] [security2:error] [pid 17445:tid 17445] [client 118.99.73.75:32697] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||josephshv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "josephshv.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apS7Ksk9JmNybT8BC6NGkwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
stinpriza
2026-08-30 22:40:31
(1 day ago)
Web App Attack
Web App Attack
๐ฌ๐ง
gigatech
2026-08-30 22:15:04
(1 day ago)
Webserver Probing
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 21:54:25
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 17:54:17.397935 2026] [security2:error] [pid 12053:tid 12053] [client 118.99.73.75:20291] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lambert-heating-and-air.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lambert-heating-and-air.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apSmiXnVgLQ6agiVM3jVWQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
expandmade.com
2026-08-30 21:32:06
(1 day ago)
unauthorized rest api call [30/Aug/2026:21:32:06 "GET /wp-json/wp/v2/users/me"]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 21:10:38
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 118.99.73.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 17:10:34.052956 2026] [security2:error] [pid 14820:tid 14820] [client 118.99.73.75:33459] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||buenasfrecuencias.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "buenasfrecuencias.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apScStlqqTpf1osSCyBONgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack