๐ซ๐ท
tecnicorioja
2024-04-29 22:01:54
(2 years ago)
POST /xmlrpc.php [29/Apr/2024:19:59:34
Brute-Force
Web App Attack
Anonymous
2024-04-29 01:11:07
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฌ๐ง
Swiptly
2024-04-28 01:19:46
(2 years ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
๐ฆ๐บ
weblite
2024-04-27 11:17:28
(2 years ago)
WP_AUTHOR_SCANNING WP_XMLRPC_ABUSE
Brute-Force
Web App Attack
Anonymous
2024-04-27 03:17:12
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2024-04-26 03:03:47
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 25 23:03:42.140002 2024] [security2:error] [pid 17439:tid 47821688493824] [client 150.95.219.151:32220] [client 150.95.219.151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hoffmanandassoc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hoffmanandassoc.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZisZjpB8Uqk0Fkgk3aw4vQAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-26 01:44:41
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 25 21:44:38.056892 2024] [security2:error] [pid 24171] [client 150.95.219.151:61344] [client 150.95.219.151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ubuciko.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ubuciko.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZisHBn-zBa5KO0vbf39wMgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-25 23:09:52
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 25 19:09:45.888012 2024] [security2:error] [pid 2191] [client 150.95.219.151:40634] [client 150.95.219.151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.aeongames.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.aeongames.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZiriuRI6g0TGSrWUg7b0cAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-25 22:35:20
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 25 18:35:16.755445 2024] [security2:error] [pid 17384] [client 150.95.219.151:45914] [client 150.95.219.151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||skinnywheels.xyz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "skinnywheels.xyz"] [uri "/wp-json/wp/v2/users"] [unique_id "ZirapPF2zQ1dwOaml95iVwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-25 22:11:59
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 25 18:11:55.523426 2024] [security2:error] [pid 13071:tid 47399494469376] [client 150.95.219.151:29464] [client 150.95.219.151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wallstreetglobe.com.aafm.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wallstreetglobe.com.aafm.us"] [uri "/wp-json/wp/v2/users"] [unique_id "ZirVKwi8NxZ9mGWv4Tk00AAAAIA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2024-04-25 14:25:00
(2 years ago)
131 requests to /wp-json/wp/v2/users
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-04-25 10:39:30
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 25 06:39:24.346436 2024] [security2:error] [pid 14141] [client 150.95.219.151:33306] [client 150.95.219.151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.toepferlab.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.toepferlab.org"] [uri "/wp-json/wp/v2/users"] [unique_id "Zioy3BnWD8eTKhUiQb6ARwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-25 10:08:11
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 150.95.219.151 (www56.onamae.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 25 06:08:04.692988 2024] [security2:error] [pid 22525] [client 150.95.219.151:26118] [client 150.95.219.151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wsspy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wsspy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZiorhIY0VyRN426--EOolAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
weblite
2024-04-25 00:19:52
(2 years ago)
WP_AUTHOR_SCANNING
Web App Attack
๐ณ๐ฑ
maxxsense
2024-04-24 23:19:00
(2 years ago)
(wordpress-user-enum) Failed wordpress-user-enum trigger from 150.95.219.151 (JP/Japan/www56.onamae. ...
show more
(wordpress-user-enum) Failed wordpress-user-enum trigger from 150.95.219.151 (JP/Japan/www56.onamae.ne.jp)
show less
Brute-Force