Anonymous
2026-10-08 07:17:21
(2 days ago)
Attacks websites by trying to access known vulnerables of plugins, brute-force of backends or probin ...
show more
Attacks websites by trying to access known vulnerables of plugins, brute-force of backends or probing of administrative tools
show less
Brute-Force
Web App Attack
๐บ๐ธ
RLDD
2026-10-08 06:22:41
(2 days ago)
WP probing -exo
Web App Attack
๐ง๐ช
taivas.nl
2026-10-08 04:32:45
(2 days ago)
Many_bad_calls
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 04:25:52
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 00:25:44.722155 2026] [security2:error] [pid 16626:tid 16626] [client 144.76.136.253:33952] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zezel.com.casagrotto.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zezel.com.casagrotto.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ascbSKl6Lgi_pL67xISE6AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 02:34:17
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 22:34:11.242555 2026] [security2:error] [pid 22795:tid 22795] [client 144.76.136.253:37220] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thereisaplaceonearth.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thereisaplaceonearth.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ascBI-FUQgMnEhQqEnZ2LwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
barbarella
2026-10-08 02:12:36
(2 days ago)
searching for GraphQL API vulnerabilities (POST /graphql)
Hacking
Web App Attack
๐ฆ๐บ
FireGuard Server
2026-10-08 00:15:10
(2 days ago)
Blocked by os-abuseipdb; 4 hits, proto=tcp, ports=443
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 19:38:52
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 15:38:49.249402 2026] [security2:error] [pid 30888:tid 30888] [client 144.76.136.253:37928] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.thesteeldrumman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.thesteeldrumman.com"] [uri "/wp-json/wp/v2/users"] [unique_id "asafybpYVL7RDOtIgdWJ0gAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 18:51:37
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 14:51:31.687124 2026] [security2:error] [pid 13570:tid 13570] [client 144.76.136.253:40238] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||midwayisland.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "midwayisland.com"] [uri "/wp-json/wp/v2/users"] [unique_id "asaUs4b94iweX-Xjg3HJQAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 18:19:22
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 14:19:16.195467 2026] [security2:error] [pid 21528:tid 21551] [client 144.76.136.253:57834] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||teresahagadorn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "teresahagadorn.com"] [uri "/wp-json/wp/v2/users"] [unique_id "asaNJE_mu45exwNgizJSmQAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 13:53:20
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 09:53:14.216021 2026] [security2:error] [pid 9557:tid 9557] [client 144.76.136.253:38950] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||beirutbazar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "beirutbazar.com"] [uri "/wp-json/wp/v2/users"] [unique_id "asZOyh6KfzfLRjepVh1dKQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-10-07 12:32:03
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 11:03:20
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 07:03:16.418135 2026] [security2:error] [pid 18826:tid 18826] [client 144.76.136.253:40980] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||calogerolawfirm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "calogerolawfirm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "asYm9Nl-XKOWCAbyRoLfsQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-07 10:51:03
(2 days ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 10:27:33
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 144.76.136.253 (h32.eu.core.hostnext.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 06:27:26.874380 2026] [security2:error] [pid 6694:tid 6720] [client 144.76.136.253:33478] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hmpdecors.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hmpdecors.com"] [uri "/wp-json/wp/v2/users"] [unique_id "asYejvkjh6SAbuR-BtyfQAAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack