๐บ๐ธ
lostswordfish.com
2026-06-04 20:24:04
(1 week ago)
Wordfence waf block on lostswordfish
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-06-04 18:25:28
(1 week ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
Jason Howell
2026-06-04 13:57:49
(1 week ago)
160.176.195.69 - - [04/Jun/2026:08:49:21 -0500] "POST /xmlrpc.php HTTP/1.1" 200 3366 "-" "Jetpack by ...
show more
160.176.195.69 - - [04/Jun/2026:08:49:21 -0500] "POST /xmlrpc.php HTTP/1.1" 200 3366 "-" "Jetpack by WordPress.com"
160.176.195.69 - - [04/Jun/2026:08:51:28 -0500] "POST /xmlrpc.php HTTP/1.1" 200 3367 "-" "WordPress.com; https://wordpress.com"
160.176.195.69 - - [04/Jun/2026:08:53:35 -0500] "POST /xmlrpc.php HTTP/1.1" 200 3368 "-" "Jetpack by WordPress.com (Jetpack 12.1; WordPress 6.2)"
160.176.195.69 - - [04/Jun/2026:08:55:42 -0500] "POST /xmlrpc.php HTTP/1.1" 200 3366 "-" "WordPress.com; https://wordpress.com"
160.176.195.69 - - [04/Jun/2026:08:57:49 -0500] "POST /xmlrpc.php HTTP/1.1" 200 3367 "-" "Jetpack by WordPress.com"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 13:24:11
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 160.176.195.69 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 160.176.195.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 09:24:05.078378 2026] [security2:error] [pid 19584:tid 19584] [client 160.176.195.69:22389] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.176.195.69 (+1 hits since last alert)|rohn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rohn.com"] [uri "/xmlrpc.php"] [unique_id "aiF8dZSVHxjf1BtO6_mABQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-04 13:11:15
(1 week ago)
(wordpress) Failed wordpress login from 160.176.195.69 (MA/Morocco/-): (CF_ENABLE)
Brute-Force
Anonymous
2026-06-04 08:22:10
(1 week ago)
(wordpress) Failed wordpress login from 160.176.195.69 (MA/Morocco/-)
Brute-Force
๐ณ๐ฑ
ConsulHosting
2026-06-04 07:37:14
(1 week ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
๐ซ๐ท
applemooz
2026-06-04 05:16:56
(1 week ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 02:13:52
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 160.176.195.69 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 160.176.195.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 22:13:45.930090 2026] [security2:error] [pid 11305:tid 11305] [client 160.176.195.69:60992] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.176.195.69 (+1 hits since last alert)|rnance.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rnance.com"] [uri "/xmlrpc.php"] [unique_id "aiDfWa5a7od46l3OYpUBBAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-04 02:12:13
(1 week ago)
[redacted] 160.176.195.69 - - [04/Jun/2026:04:11:31 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" " ...
show more
[redacted] 160.176.195.69 - - [04/Jun/2026:04:11:31 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
[redacted] 160.176.195.69 - - [04/Jun/2026:04:11:41 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
[redacted] 160.176.195.69 - - [04/Jun/2026:04:11:51 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack/12.5; WordPress/6.3; http://site33283668.com"
[redacted] 160.176.195.69 - - [04/Jun/2026:04:12:02 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com (Jetpack 12.0; WordPress 6.4)"
[redacted] 160.176.195.69 - - [04/Jun/2026:04:12:12 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-04 02:11:22
(1 week ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 01:44:53
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 160.176.195.69 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 160.176.195.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 21:44:48.450895 2026] [security2:error] [pid 7641:tid 7641] [client 160.176.195.69:61942] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 160.176.195.69 (+1 hits since last alert)|knoxbestos.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "knoxbestos.com"] [uri "/xmlrpc.php"] [unique_id "aiDYkOlb45eXQj3M2COlEQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-04 00:39:52
(1 week ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-06-04 00:10:08
(1 week ago)
(xmlrpc) Apache: Failed xmlrpc access from 160.176.195.69 (MA/Morocco/-): 10 in the last 3600 secs ( ...
show more
(xmlrpc) Apache: Failed xmlrpc access from 160.176.195.69 (MA/Morocco/-): 10 in the last 3600 secs (0-201)
show less
Hacking
Anonymous
2026-06-03 21:57:10
(1 week ago)
Attac
Brute-Force