๐ธ๐ช
Per-Erik Runebert
2025-01-03 09:39:06
(1 year ago)
Excessive unauthorized requests
Hacking
๐ซ๐ท
tecnicorioja
2025-01-02 23:01:21
(1 year ago)
(Mod_security) [02/Jan/2025:03:39:04.854551
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-01-02 07:11:00
(1 year ago)
SQL Injection
SQL Injection
๐ต๐น
Information Security
2025-01-02 06:48:33
(1 year ago)
Web App Attack
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-01-02 06:39:32
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ง๐ช
taivas.nl
2025-01-02 05:32:19
(1 year ago)
Many_bad_calls
Web App Attack
๐ฉ๐ช
nextweb
2025-01-02 04:06:24
(1 year ago)
(mod_security) mod_security (id:212290) triggered by 13.74.23.33 (IE/Ireland/Leinster/Dublin/-/[AS80 ...
show more
(mod_security) mod_security (id:212290) triggered by 13.74.23.33 (IE/Ireland/Leinster/Dublin/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 5 in the last 3600 secs (CF_ENABLE)
show less
Brute-Force
๐ง๐ช
taivas.nl
2025-01-02 02:32:14
(1 year ago)
Bad_requests
Bad Web Bot
๐ง๐ฌ
pa4080
2025-01-02 02:15:05
(1 year ago)
Detected by ModSecurity. Request URI: /wl.api.php?imgIWL=%2Fimages%2Farchive%2F0%2F00%2F202208270941 ...
show more
Detected by ModSecurity. Request URI: /wl.api.php?imgIWL=%2Fimages%2Farchive%2F0%2F00%2F20220827094117%21Installed_Extensions_-_GNOME_Shell_Extensions_-_current.pdf&imgIWL=..%252F..%252F..%252F..%252F..%252F..%252F..%252F..%252F..%252Fetc%252Fpasswd
show less
Hacking
Web App Attack
๐ง๐ฌ
pa4080
2025-01-02 02:15:05
(1 year ago)
Detected by ModSecurity. Request URI: /wl.api.php?imgIWL=%3Cscript%3Ealert%28%27XSS%27%29%3C%2Fscrip ...
show more
Detected by ModSecurity. Request URI: /wl.api.php?imgIWL=%3Cscript%3Ealert%28%27XSS%27%29%3C%2Fscript%3E
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-02 02:10:05
(1 year ago)
(mod_security) mod_security (id:210580) triggered by 13.74.23.33 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210580) triggered by 13.74.23.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 01 21:09:59.853083 2025] [security2:error] [pid 19057:tid 19057] [client 13.74.23.33:54052] [client 13.74.23.33] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "etc/passwd" at ARGS:codigo. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||logosformacion.net|F|2"] [data "Matched Data: etc/passwd found within ARGS:codigo: ../../../../../../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "logosformacion.net"] [uri "/cursoporgrupo.php"] [unique_id "Z3X1d51b4Ha7VqRHsc5HPgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-02 01:54:45
(1 year ago)
(mod_security) mod_security (id:212620) triggered by 13.74.23.33 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:212620) triggered by 13.74.23.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 01 20:54:41.594470 2025] [security2:error] [pid 2552935:tid 2552935] [client 13.74.23.33:52655] [client 13.74.23.33] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||www.sports.grimone.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /gallery.php?bld=<script>alert('xss')</script>&sport=baseball&type=cards&year=1967"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.sports.grimone.com"] [uri "/gallery.php"] [unique_id "Z3Xx4Sfg60BkBm_2BdJAZQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-02 01:23:38
(1 year ago)
(mod_security) mod_security (id:212620) triggered by 13.74.23.33 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:212620) triggered by 13.74.23.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 01 20:23:33.356146 2025] [security2:error] [pid 19904:tid 19904] [client 13.74.23.33:63912] [client 13.74.23.33] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||www.mathewsdental.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /index.php?id=<script>alert('xss')</script>&option=com_sppagebuilder&view=page"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.mathewsdental.com"] [uri "/index.php"] [unique_id "Z3Xqlc14C6-HrnBOXvLETwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Tutorial.Ninja
2025-01-01 23:30:00
(1 year ago)
[2025-01-01 23:30:22] IP: 13.74.23.33 | URL: /forums.php?id=%3Cobject+data%3D%27data%3Atext%2Fhtml%3 ...
show more
[2025-01-01 23:30:22] IP: 13.74.23.33 | URL: /forums.php?id=%3Cobject+data%3D%27data%3Atext%2Fhtml%3Bbase64%2CPHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4%3D%27%3E&topic= | Input: {"id":"<object data='data:text\/html;base64,PHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4='>","topic":""}
[2025-01-01 23:30:23] IP: 13.74.23.33 | URL: /forums.php?id=254&topic=%3Cobject+data%3D%27data%3Atext%2Fhtml%3Bbase64%2CPHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4%3D%27%3E | Input: {"id":"254","topic":"<object data='data:text\/html;base64,PHNjcmlwdD5hbGVydCgnWFNTJyk8L3NjcmlwdD4='>"}
show less
Web App Attack
๐ฎ๐ช
RoboSOC
2025-01-01 23:17:00
(1 year ago)
HTTP Cross Site Scripting Attempt , PTR: PTR record not found
Web App Attack