๐จ๐ฟ
Countryman
2026-09-15 00:10:01
(3 days ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
๐บ๐ธ
agabeckov
2026-09-14 17:53:11
(3 days ago)
Fail2Ban detected brute-force attempt on Cisco Anyconnect
VPN IP
Brute-Force
๐ธ๐ช
OnTheEdge
2026-09-14 13:13:24
(3 days ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐จ๐ฟ
Countryman
2026-09-14 00:10:01
(4 days ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
๐จ๐ญ
4server
2026-09-10 01:06:10
(1 week ago)
[ThuSep1003:06:08.2021672026][security2:error][pid306411:tid306630][client157.22.47.130:0]ModSecurit ...
show more
[ThuSep1003:06:08.2021672026][security2:error][pid306411:tid306630][client157.22.47.130:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"614\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"leonitraslochi.ch\"][uri\"/xmlrpc.php\"][unique_id\"aqICgMCtATNJu-ulMy_dPQAAAMY\"]
show less
Hacking
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-08 16:16:59
(1 week ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ฉ๐ช
FD-IX
2026-08-19 16:53:43
(4 weeks ago)
Brute-force login attack detected by WordPress firewall.
Brute-Force
๐ณ๐ฑ
i-turnradio.nl
2026-07-22 19:33:38
(1 month ago)
2026-07-22 @ 21:33:38 (CET) ~ Blocked for trying to access: /erker/wp/wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 03:51:07
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 23:51:03.769430 2026] [security2:error] [pid 17978:tid 17978] [client 157.22.47.130:51635] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||voodooshop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "voodooshop.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afAup-fF80PirVU_68wZDgAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 13:29:09
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 19 09:29:03.818210 2026] [security2:error] [pid 2944834:tid 2944834] [client 157.22.47.130:11915] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thecalls.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thecalls.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aeTYnxqmxhjPCezyMPnSXAAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-04-18 04:14:59
(5 months ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-04-13 13:48:17
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 09:48:10.012160 2026] [security2:error] [pid 397406:tid 397431] [client 157.22.47.130:32535] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pixelpushersdesign.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pixelpushersdesign.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adz0Gs7b4U1UDC0bEHv66QAAAFY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-12 21:36:32
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.47.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 12 17:36:27.424554 2026] [security2:error] [pid 2303927:tid 2303927] [client 157.22.47.130:57433] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||debbiegarner.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "debbiegarner.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adwQWwBgE14lj362jk5jowAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack