๐บ๐ธ
octageeks.com
2025-11-18 05:06:13
(7 months ago)
Wordpress malicious attack:[octahoneypot]
Web App Attack
Anonymous
2025-11-18 00:55:00
(7 months ago)
eval-stdin.php
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
jhuisi
2025-11-17 17:05:08
(7 months ago)
Mod Security Hit
Web App Attack
๐ง๐ท
takedown
2025-11-17 12:33:00
(7 months ago)
Web App Attack
๐ฉ๐ช
LRob.fr
2025-11-17 11:00:58
(7 months ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
๐ณ๐ฑ
Savvii
2025-11-17 09:25:36
(7 months ago)
15 attempts against mh-mag-login-ban on sun
Web App Attack
๐ฒ๐พ
Rizzy
2025-11-17 08:42:44
(7 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฉ๐ช
[email protected]
2025-11-17 08:14:02
(7 months ago)
learn.tcfdhub.org:443 139.59.118.79 - - [17/Nov/2025:08:14:01 +0000] "GET /vendor/phpunit/phpunit/sr ...
show more
learn.tcfdhub.org:443 139.59.118.79 - - [17/Nov/2025:08:14:01 +0000] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 528 "http://learn.tcfdhub.org/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
learn.tcfdhub.org:443 139.59.118.79 - - [17/Nov/2025:08:14:01 +0000] "GET /vendor/phpunits/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 528 "http://learn.tcfdhub.org/vendor/phpunits/phpunit/src/Util/PHP/eval-stdin.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
learn.tcfdhub.org:443 139.59.118.79 - - [17/Nov/2025:08:14:02 +0000] "GET /assets/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 528 "http://learn.tcfdhub.org/assets/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Ch
...
show less
Web App Attack
๐บ๐ธ
gu-alvareza
2025-11-17 07:05:14
(7 months ago)
PHPUnit.Eval-stdin.PHP.Remote.Code.Execution
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2025-11-17 07:02:22
(7 months ago)
Cloudflare WAF: Request Path: /yii/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: ...
show more
Cloudflare WAF: Request Path: /yii/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: Host: foro.elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: POST Timestamp: 2025-11-17T07:02:22Z ruleId: db1f213645904ab9b16b227b4a6a7b3a. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-11-17 04:55:36
(7 months ago)
TinyMCE Scan Activities
Web App Attack
๐บ๐ธ
mnsf
2025-11-16 01:05:40
(7 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2025-11-15 22:55:10
(7 months ago)
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show more
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Brute-Force
Web App Attack
๐ช๐ธ
el-brujo
2025-11-15 22:35:23
(7 months ago)
Cloudflare WAF: Request Path: /adminstrator/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Reque ...
show more
Cloudflare WAF: Request Path: /adminstrator/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: Host: foro.elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: POST Timestamp: 2025-11-15T22:35:23Z ruleId: db1f213645904ab9b16b227b4a6a7b3a. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-15 20:29:26
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 139.59.118.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 139.59.118.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 15 15:29:21.954967 2025] [security2:error] [pid 2224:tid 2224] [client 139.59.118.79:49530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eutoc.com"] [uri "/sftp-config.json"] [unique_id "aRjioefpPPNg1-6ik9cbwQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack