Anonymous
2026-09-12 08:03:55
(1 hour ago)
WordPress Brute Force
Brute-Force
🇺🇸
TPI-Abuse
2026-09-11 22:52:40
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 18:52:33.722405 2026] [security2:error] [pid 4293:tid 4293] [client 124.246.74.137:38804] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||annpietrangelo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "annpietrangelo.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqSGMYcjGbrU7qgrbcsTSwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 21:43:18
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 17:43:10.609727 2026] [security2:error] [pid 29477:tid 29477] [client 124.246.74.137:52348] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||matt-bechtel.neconebooks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "matt-bechtel.neconebooks.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqR17ut2RkiWS8hLsZxeNQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
nationaleventpros.com
2026-09-11 20:19:22
(13 hours ago)
WordPress login attempt
Brute-Force
🇺🇸
nyt
2026-09-11 12:11:32
(21 hours ago)
Repeated WordPress login POSTs blocked by WAF (3 in 6h)
Brute-Force
Web App Attack
🇦🇺
AWW-Admin
2026-09-11 07:48:50
(1 day ago)
(wordpress) Failed wordpress login from 124.246.74.137 (SG/Singapore/-)
Brute-Force
🇫🇷
LRob
2026-09-10 19:35:10
(1 day ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-json/wp/v2/users | 2026-09- ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-json/wp/v2/users | 2026-09-10 19:35 UTC
show less
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 11:05:09
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 07:05:03.999393 2026] [security2:error] [pid 15712:tid 15712] [client 124.246.74.137:46880] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||georgegourmet.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "georgegourmet.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqKO310gqHxVRDM705X2qAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
london2038.com
2026-09-10 03:24:07
(2 days ago)
Probing for exploits
124.246.74.137 - - [10/Sep/2026:05:11:01 +0200] "GET /wp-login.php HTTP/2.0" 30 ...
show more
Probing for exploits
124.246.74.137 - - [10/Sep/2026:05:11:01 +0200] "GET /wp-login.php HTTP/2.0" 301 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
124.246.74.137 - - [10/Sep/2026:05:24:03 +0200] "GET /wp-login.php HTTP/2.0" 301 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
🇳🇿
Tripwire
2026-09-09 11:37:37
(2 days ago)
Wordpress login attempts
Brute-Force
Web App Attack
🇩🇪
LRob
2026-09-09 06:14:51
(3 days ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-json/wp/v2/users/me | 2026- ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-json/wp/v2/users/me | 2026-09-09 06:14 UTC
show less
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 04:59:07
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 00:58:58.637310 2026] [security2:error] [pid 10852:tid 10852] [client 124.246.74.137:34364] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kildarafarms.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kildarafarms.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDnkmoH7r77PWvCYy8JzQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇽
octageeks.com
2026-09-09 04:13:05
(3 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 03:35:37
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 23:35:29.368023 2026] [security2:error] [pid 12778:tid 12778] [client 124.246.74.137:52954] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||peterjohnsonauthor.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "peterjohnsonauthor.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDUASmQ7CUi8C0onSGSdwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:55:12
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.246.74.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:55:05.771790 2026] [security2:error] [pid 23234:tid 23357] [client 124.246.74.137:52010] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aclarityforensics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aclarityforensics.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBoGe2egA6cnpWizuhmUQAAAco"]
show less
Brute-Force
Bad Web Bot
Web App Attack