๐ฉ๐ช
FeG Deutschland
2026-07-28 18:37:50
(3 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 23:18:14
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 157.22.72.137 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.72.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 19:18:09.798472 2026] [security2:error] [pid 3659596:tid 3659596] [client 157.22.72.137:18673] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||joycebrown.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "joycebrown.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amaVscT9Y6GwEuFnSskKAwAAABI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-07-26 12:09:44
(2 days ago)
Accessed trap at '/xmlrpc.php'
Web App Attack
๐จ๐ฆ
DRI
2026-07-26 06:13:28
(2 days ago)
Web attack/Malicious activity detected
Web App Attack
๐จ๐ฆ
DRI
2026-07-24 17:07:47
(4 days ago)
Web attack/Malicious activity detected
Web App Attack
๐จ๐ฆ
DRI
2026-07-19 20:01:17
(1 week ago)
Web attack/Malicious activity detected
Web App Attack
Anonymous
2026-07-19 19:21:47
(1 week ago)
FPROCO WEBEXPLOIT 157.22.72.137 (157.22.72.137)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 18:24:54
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 157.22.72.137 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.72.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 14:24:49.913371 2026] [security2:error] [pid 15405:tid 15405] [client 157.22.72.137:41215] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||esad.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "esad.com"] [uri "/wp-json/wp/v2/users"] [unique_id "alpzcf2U9iZwDDyaWIBNkwAAADg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-23 01:34:39
(1 month ago)
56 attempts against mh-misbehave-ban on twig
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-12 06:51:58
(2 months ago)
IM360 WAF: SQL Injection via WordPress Link functionality MV:25AND/**/ROW(1741,2403)>(SELECT/**/COUN ...
show more
IM360 WAF: SQL Injection via WordPress Link functionality MV:25AND/**/ROW(1741,2403)>(SELECT/**/COUNT(*),CONCAT('~',(SELECT/**/(ELT(1741=1741,1))),'~',FLOOR(RAND(0)*2))x/**/FROM/**/(SELECT/**/8347/**/UNION/**/SELECT/**/9065/**/UNION/**/SELECT/**/3433/**/UNION/**/SELECT/**/1990)a/**/GROUP/**/BY/**/x)#
show less
SQL Injection
๐ฉ๐ช
big-cloud.nl
2026-04-29 16:41:30
(2 months ago)
Try to access /.aws/credentials
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 07:30:23
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 157.22.72.137 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 157.22.72.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 03:30:19.692626 2026] [security2:error] [pid 15986:tid 15986] [client 157.22.72.137:56933] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.edensgroup.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.edensgroup.com"] [uri "/s3cmd.ini"] [unique_id "afBiC2CrPNAwXl5kx9SVowAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
rellik
2026-04-28 07:30:00
(3 months ago)
Scanning Critical File
Hacking
Web App Attack