🇵🇱
Budyn
2026-08-30 21:25:26
(7 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: astropot.store | URI: /wp-login.php | UA: Mozilla/5.0 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-08-29 18:53:56
(1 day ago)
cloudlinux2 fail2ban: 2026-08-29 20:49:06,587 fail2ban.filter [1478]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-29 20:49:06,587 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 131.226.2.187 - 2026-08-29 20:49:06cloudlinux2 fail2ban: 2026-08-29 20:49:28,138 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 136.144.43.13 - 2026-08-29 20:49:28cloudlinux2 fail2ban: 2026-08-29 20:50:16,121 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 136.144.19.54 - 2026-08-29 20:50:15cloudlinux2 fail2ban: 2026-08-29 20:50:16,137 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 216.24.219.204 - 2026-08-29 20:50:15cloudlinux2 fail2ban: 2026-08-29 20:51:16,557 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 209.127.36.79 - 2026-08-29 20:51:16cloudlinux2 fail2ban: 2026-08-29 20:51:24,517 fail2ban.actions [1478]: NOTICE [plesk-modsecurity] Unban 103.187.94.76cloudlinux2 fail2ban: 2026-08-29 20:51:40,546 fail2ban.actions [1478]: NOTICE [plesk-modsecurity] Unban 34.141.172.11cloudlinux2 fail2ban: 2026-08-29 20:53:06,455 fa
show less
Web App Attack
🇹🇷
oalver
2026-08-29 05:26:47
(1 day ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /wp-login.php (HTTP 200). First seen: 2026-08-28. Risk score: 60/100.
show less
Web App Attack
🇹🇷
oalver
2026-08-28 23:32:59
(2 days ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /wp-login.php (HTTP 200). First seen: 2026-08-28. Risk score: 30/100.
show less
Web App Attack
🇩🇪
iNetWorker
2026-08-28 19:49:38
(2 days ago)
trolling for resource vulnerabilities
Web App Attack
🇦🇺
afleventoffice.com.au
2026-08-25 23:20:41
(5 days ago)
GET /wp-login.php HTTP/1.1
Web App Attack
Anonymous
2026-08-20 04:22:41
(1 week ago)
2026-08-20T04:22:40.955369+00:00 instance-20260804-1025 wordpress(netal.co)[103970]: Blocked user en ...
show more
2026-08-20T04:22:40.955369+00:00 instance-20260804-1025 wordpress(netal.co)[103970]: Blocked user enumeration attempt from 136.144.19.54
...
show less
Web App Attack
🇩🇪
LRob
2026-08-18 16:18:43
(1 week ago)
WordPress probing | req: /wp-login.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; rv:143.0) Gecko/20 ...
show more
WordPress probing | req: /wp-login.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; rv:143.0) Gecko/20100101 Firefox/143.0
show less
Brute-Force
Web App Attack
Anonymous
2026-08-13 00:00:00
(2 weeks ago)
"Security violation, excess traffic against library/education infrastructure"
Brute-Force
🇧🇪
voormedia
2026-08-11 22:33:21
(2 weeks ago)
Accessed trap at '/wp-login.php'
Web App Attack
🇩🇪
HandyTreff.de
2026-08-02 09:11:52
(4 weeks ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -85.312 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -85.312 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/129.0.0.0 Safari/537.36
show less
Web App Attack
Bad Web Bot
Anonymous
2026-07-20 14:47:08
(1 month ago)
136.144.19.54 - - [20/Jul/2026:14:47:07 +0000] "GET /wp-login.php HTTP/1.1" 404 4218 "-" "Mozilla/5. ...
show more
136.144.19.54 - - [20/Jul/2026:14:47:07 +0000] "GET /wp-login.php HTTP/1.1" 404 4218 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 Version/17.0 Safari/605.1.15"
...
show less
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-07-19 21:35:04
(1 month ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
🇺🇸
nyt
2026-07-16 04:15:13
(1 month ago)
WP Author Enumeration, WP User Enumeration
Web App Attack
🇧🇪
voormedia
2026-06-30 10:40:40
(2 months ago)
Accessed trap at '/wp-login.php'
Web App Attack