🇩🇪
Hazzard
2026-09-08 22:41:22
(5 hours ago)
(wordpress) Failed wordpress login from 125.59.79.233 (HK/Hong Kong/-/-/cm125-59-79-233.hkcable.com. ...
show more
(wordpress) Failed wordpress login from 125.59.79.233 (HK/Hong Kong/-/-/cm125-59-79-233.hkcable.com.hk/[redacted]): (CF_ENABLE)
show less
Brute-Force
Anonymous
2026-09-08 22:12:11
(5 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇩🇪
ger-stg-sifi1
2026-09-08 22:11:23
(5 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 22:10:40
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): ...
show more
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 18:10:32.258753 2026] [security2:error] [pid 27922:tid 27922] [client 125.59.79.233:51014] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||loneoakhoney.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "loneoakhoney.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCH2NtOT2VSJ3h_D-MlNwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
nationaleventpros.com
2026-09-08 22:03:06
(5 hours ago)
WordPress login attempt
Brute-Force
🇩🇪
neckaralb-admin.de
2026-09-08 21:59:18
(5 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇩🇪
LRob
2026-09-08 21:56:00
(5 hours ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-login.php | 2026-09-08 21:5 ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-login.php | 2026-09-08 21:56 UTC
show less
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 21:54:16
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): ...
show more
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 17:54:08.111744 2026] [security2:error] [pid 321105:tid 321173] [client 125.59.79.233:53150] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.luxury.property-management-companies-chicago.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.luxury.property-management-companies-chicago.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCEAJUNc5RCeUnw2mwUqwAAAgc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 18:45:29
(8 hours ago)
Web attack blocked by Wordfence on www.museumvalkenburg.nl (1 hit). Reported by CRMON.
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 18:43:51
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): ...
show more
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 14:43:46.168421 2026] [security2:error] [pid 16962:tid 16962] [client 125.59.79.233:41472] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hodlmoser.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hodlmoser.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBXYjrDXOV_JzqjlU-btAAAADY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-08 18:18:36
(9 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 17:48:28
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): ...
show more
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 13:48:23.654707 2026] [security2:error] [pid 15028:tid 15028] [client 125.59.79.233:32920] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||baselinesc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "baselinesc.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBKZw8-CRnxCxticBeBhgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 16:59:44
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): ...
show more
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 12:59:41.321349 2026] [security2:error] [pid 12529:tid 12529] [client 125.59.79.233:35506] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||matt-bechtel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "matt-bechtel.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqA-_YCWovS7C7LoS1BH0wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 15:47:58
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): ...
show more
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 11:47:52.775529 2026] [security2:error] [pid 30655:tid 30655] [client 125.59.79.233:42324] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nolaanime.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nolaanime.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAuKHNBXP62MQApmSNq-gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 15:12:19
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): ...
show more
(mod_security) mod_security (id:225170) triggered by 125.59.79.233 (cm125-59-79-233.hkcable.com.hk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 11:12:09.897401 2026] [security2:error] [pid 25718:tid 25774] [client 125.59.79.233:34828] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||41bravo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "41bravo.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAlyf9-7Y74B2FFjRlZWAAAAYk"]
show less
Brute-Force
Bad Web Bot
Web App Attack