π«π·
tecnicorioja
2026-06-11 22:00:31
(1 day ago)
wp-login attack [11/Jun/2026:15:57:19
Brute-Force
Web App Attack
π©πͺ
FeG Deutschland
2026-06-11 12:52:34
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
π«π·
tecnicorioja
2026-06-10 22:00:09
(2 days ago)
POST /xmlrpc.php [10/Jun/2026:13:52:56
Brute-Force
Web App Attack
π«π·
Yepngo
2026-06-10 05:20:38
(3 days ago)
142.93.10.93 - - [10/Jun/2026:07:20:38 +0200] "POST /wp-login.php HTTP/2.0" 200 12101 "https://blog. ...
show more
142.93.10.93 - - [10/Jun/2026:07:20:38 +0200] "POST /wp-login.php HTTP/2.0" 200 12101 "https://blog.yepngo.com/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36 Edg/133.0.0.0"
...
show less
Brute-Force
Web App Attack
π²π½
octageeks.com
2026-06-10 04:44:43
(3 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
π«π·
solution.it
2026-06-10 04:32:28
(3 days ago)
[Wed Jun 10 06:32:28.094913 2026] [php7:error] [pid 2539520:tid 2539520] [client 142.93.10.93:54098] ...
show more
[Wed Jun 10 06:32:28.094913 2026] [php7:error] [pid 2539520:tid 2539520] [client 142.93.10.93:54098] script '/var/www/html/blog.solution.it/wp-login.php' not found or unable to stat
show less
Web App Attack
πΊπΈ
wordpresshosting.solutions
2026-06-09 23:50:38
(3 days ago)
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 142.93.10.93 - - [09/Jun/2026:2 ...
show more
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 142.93.10.93 - - [09/Jun/2026:23:50:36 +0000] "GET /wp-login.php HTTP/1.1" 200 6661 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
142.93.10.93 - - [09/Jun/2026:23:50:37 +0000] "POST /wp-login.php HTTP/1.1" 503 23807 "https://[DOMAIN]/wp-login.php" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
show less
Brute-Force
Web App Attack
π«π·
Yepngo
2026-06-09 19:37:02
(4 days ago)
142.93.10.93 - - [09/Jun/2026:20:47:46 +0200] "POST /xmlrpc.php HTTP/2.0" 200 408 "-" "Mozilla/5.0 ( ...
show more
142.93.10.93 - - [09/Jun/2026:20:47:46 +0200] "POST /xmlrpc.php HTTP/2.0" 200 408 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36 Edg/133.0.0.0"
142.93.10.93 - - [09/Jun/2026:21:37:01 +0200] "POST /wp-login.php HTTP/2.0" 200 12101 "https://blog.yepngo.com/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36 Edg/133.0.0.0"
...
show less
Brute-Force
Web App Attack
πΊπΈ
ambor
2026-06-09 18:11:10
(4 days ago)
Honeypot access: WordPress admin access attempt. Path: /wp-login.php
Brute-Force
Web App Attack
π©πͺ
FeG Deutschland
2026-06-09 17:33:04
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
Exploited Host
Web App Attack
Anonymous
2026-06-09 15:30:26
(4 days ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
π¬π§
spamverify.com
2026-06-09 12:00:43
(4 days ago)
Honeypot Hit: xmlrpc.php
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 11:27:50
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 142.93.10.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 142.93.10.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:27:43.869779 2026] [security2:error] [pid 19365:tid 19365] [client 142.93.10.93:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||yggdrasil.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "yggdrasil.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aif4r1xWvQq_Dp3NXi94BwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π²πΉ
Malta
2026-06-09 08:39:11
(4 days ago)
142.93.10.93 - - [09/Jun/2026:10:39:11 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Fedor ...
show more
142.93.10.93 - - [09/Jun/2026:10:39:11 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Fedora; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
πΊπΈ
micropedro
2026-06-08 17:30:24
(5 days ago)
4 incidents: malicious activity. First: 2026-06-01 12:30, Last: 2026-06-08 13:30 UTC. Triggers: ufw- ...
show more
4 incidents: malicious activity. First: 2026-06-01 12:30, Last: 2026-06-08 13:30 UTC. Triggers: ufw-repeater.
show less
Port Scan