๐ซ๐ฎ
oh.mg
2025-06-18 08:48:36
(1 year ago)
[Wed Jun 18 10:48:35.324464 2025] [security2:error] [pid 1700794:tid 1700813] [client 134.122.207.53 ...
show more
[Wed Jun 18 10:48:35.324464 2025] [security2:error] [pid 1700794:tid 1700813] [client 134.122.207.53:23917] [client 134.122.207.53] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 20)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.oh.mg"] [uri "/"] [unique_id "aFJ9Y4L6RObVj5Wqg2ct6AAAABE"], referer: https://www.oh.mg/?tag/index=&tag={pbohome/Indexot:if(1)(usort/*%3e*/(post/*%3e*/(/*%3e*/1),create_function/*%3e*/(/*%3e*/post/*%3e*/(/*%3e*/2),post/*%3e*/(/*%3e*/3))));//)}(123){/pbhome/Indexoot:if}&tagstpl=news.html&lnoc2tspfar1_ue
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2025-06-18 08:35:01
(1 year ago)
Novell ZENworks Mobile Management Cross-Site Scripting Vulnerability(39766)
Web App Attack
๐ต๐น
Information Security
2025-06-18 05:24:30
(1 year ago)
Web App Attack
Web App Attack
๐ซ๐ท
masterguru
2025-06-18 04:28:50
(1 year ago)
PHP Injection Attack: High-Risk PHP Function Name Found. Matched phrase "file_put_contents" at ARGS: ...
show more
PHP Injection Attack: High-Risk PHP Function Name Found. Matched phrase "file_put_contents" at ARGS:3. (933150-131)
show less
Hacking
๐ป๐ณ
trung.fun
2025-06-18 04:28:05
(1 year ago)
DDoS, Hack, Brute Force, Web Attack
...
DDoS Attack
Web Spam
Hacking
Brute-Force
Web App Attack
๐ซ๐ฎ
oh.mg
2025-06-18 03:30:04
(1 year ago)
[Wed Jun 18 05:30:02.908185 2025] [security2:error] [pid 1700794:tid 1700819] [client 134.122.207.53 ...
show more
[Wed Jun 18 05:30:02.908185 2025] [security2:error] [pid 1700794:tid 1700819] [client 134.122.207.53:22273] [client 134.122.207.53] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 20)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "oh.mg"] [uri "/"] [unique_id "aFIyuoL6RObVj5Wqg2fvfwAAABc"], referer: https://oh.mg/?tag/index=&tag={pbohome/Indexot:if(1)(usort/*%3e*/(post/*%3e*/(/*%3e*/1),create_function/*%3e*/(/*%3e*/post/*%3e*/(/*%3e*/2),post/*%3e*/(/*%3e*/3))));//)}(123){/pbhome/Indexoot:if}&tagstpl=news.html&lnoc2tspfar1_ue
[Wed Jun 18 05:30:03.452099 2025] [security2:error] [pid 1700794:tid 1700814] [client 134.122.207.53:22273] [client 134.122.207.53] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at
...
show less
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2025-06-18 03:18:45
(1 year ago)
123 requests with url.path *config.inc.php
122 requests with url.path *.php.bak
Brute-Force
Bad Web Bot
๐บ๐ธ
ipblock.com
2025-06-18 02:31:00
(1 year ago)
IPBlock protected site ID [3390-wh].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2025-06-18 01:32:00
(1 year ago)
IPBlock protected site ID [2711-bg].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
SiliSoftware
2025-06-17 23:03:14
(1 year ago)
/FCKeditor/editor/filemanager/connectors/asp/connector.asp?Command=FileUpload&Type=File&CurrentFolde ...
show more
/FCKeditor/editor/filemanager/connectors/asp/connector.asp?Command=FileUpload&Type=File&CurrentFolder=%2F
show less
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2025-06-17 15:10:11
(1 year ago)
POST /?tag/index=&tag=%7Bpbohome/Indexot:if(1)(usort/*%3e*/(post/*%3e*/(/*%3e*/1),create_function/*% ...
show more
POST /?tag/index=&tag=%7Bpbohome/Indexot:if(1)(usort/*%3e*/(post/*%3e*/(/*%3e*/1),create_function/*%3e*/(/*%3e*/post/*%3e*/(/*%3e*/2),post/*%3e*/(/*%3e*/3))));//)%7D(123)%7B/pbhome/Indexoot:if%7D&tagstpl=news.html&lnoc2tspfar1_ue HTTP/1.1
show less
Web App Attack
๐ซ๐ฎ
xyz.rip
2025-06-07 23:06:34
(1 year ago)
WAF Violation
...
Hacking
Web App Attack
๐ซ๐ฎ
cycastic
2025-06-07 20:35:04
(1 year ago)
Probed /e/DoInfo/ecms.php on 06/07/2025 20:32:56 +00:00 (UA: Mozilla/4.0 (compatible; MSIE 7.0; Wind ...
show more
Probed /e/DoInfo/ecms.php on 06/07/2025 20:32:56 +00:00 (UA: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; SLCC2; .NET CLR 2.0.50727; InfoPath.3; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729; MS-RTC LM 8), Query: )
Probed /index.php on 06/07/2025 20:32:56 +00:00 (UA: Mozilla/5.0 (Windows NT 5.1; U; Firefox/3.5; en; rv:1.9.1.6) Gecko/20091201 Firefox/3.5.6 Opera 10.53, Query: ?m=member&c=index&a=register&siteid=1)
Probed /user.php on 06/07/2025 20:32:56 +00:00 (UA: Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_5_8; en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/4.0.207.0 Safari/532.0, Query: ?act=login)
Probed /utility/convert/index.php on 06/07/2025 20:32:56 +00:00 (UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US) AppleWebKit/525.13 (KHTML, like Gecko) Chrome/0.2.149.27 Safari/525.13, Query: ?a=config&source=d7.2_x2.0)
Probed /user.php on 06/07/2025 20:32:56 +00:00 (UA: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 6.0; tr) Opera 10.10, Query: ?act=login)
show less
Web App Attack
Anonymous
2025-06-07 06:13:53
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_MODSEC
Brute-Force
SSH
๐บ๐ธ
etu brutus
2025-06-07 04:32:11
(1 year ago)
134.122.207.53 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host