๐ง๐ช
taivas.nl
2026-07-22 04:33:29
(4 hours ago)
Many_bad_calls
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 22:38:57
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 18:38:52.491935 2026] [security2:error] [pid 2700:tid 2700] [client 2002:982a:f60a::982a:f60a:55982] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bearssd.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bearssd.org"] [uri "/wp-json/wp/v2/users"] [unique_id "al_0_FmoUPqGO_fMKiaGWQAAAAs"], referer: https://www.bing.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 22:09:06
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 18:09:01.947013 2026] [security2:error] [pid 26880:tid 26880] [client 2002:982a:f60a::982a:f60a:61924] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ashleycroft.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ashleycroft.com"] [uri "/wp-json/wp/v2/users"] [unique_id "al_t_bMDROb1APRABjpHzgAAAAk"], referer: https://wordpress.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-07-21 21:48:29
(11 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 20:42:26
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 16:42:20.669555 2026] [security2:error] [pid 19746:tid 19746] [client 2002:982a:f60a::982a:f60a:56827] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||495metro.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "495metro.com"] [uri "/wp-json/wp/v2/users"] [unique_id "al_ZrOAjafCa3oNE2rbwggAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 19:15:54
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:982a:f60a::982a:f60a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 15:15:47.898347 2026] [security2:error] [pid 307621:tid 307621] [client 2002:982a:f60a::982a:f60a:57042] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||billwegener.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "billwegener.net"] [uri "/wp-json/wp/v2/users"] [unique_id "al_FY6qS6_8cda9h2iOIAAAAABU"], referer: https://wordpress.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-07-21 18:34:59
(14 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-07-21 18:22:00
(14 hours ago)
(wordpress) Apache: Failed WordPress login from 152.42.246.10 (SG/Singapore/-): 10 in the last 3600 ...
show more
(wordpress) Apache: Failed WordPress login from 152.42.246.10 (SG/Singapore/-): 10 in the last 3600 secs (0-195)
show less
Hacking
๐ซ๐ท
masterguru
2026-07-21 17:22:32
(15 hours ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-201)
Hacking
Anonymous
2026-07-21 14:26:01
(18 hours ago)
Bot / scanning and/or hacking attempts: GET /wp-login.php HTTP/1.1
Hacking
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-07-21 10:24:51
(22 hours ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ซ๐ท
conseilgouz
2026-07-21 07:41:08
(1 day ago)
sce-6 : Trying access system files=>/license.txt(license.txt)
Hacking
๐ฎ๐ณ
evicky2002
2026-07-21 06:00:00
(1 day ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ง๐ช
taivas.nl
2026-07-21 05:02:08
(1 day ago)
Bad_requests
Bad Web Bot
๐ฆ๐บ
screwlooseit.com.au
2026-07-21 04:49:21
(1 day ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
US/United States/-
Web App Attack