π¨π
backslash
2026-04-17 20:48:07
(5 months ago)
block ruleset 798ECF92F12ADC636D3520C2890AF17ADEFDE3BE
Bad Web Bot
ππΊ
btimon
2026-01-04 14:33:00
(8 months ago)
WordPress.REST.API.Username.Enumeration.Information.Disclosure
Hacking
πΈπͺ
KIDOS
2025-12-20 06:55:14
(8 months ago)
Suspicious activity detected in ezproxy log (e.g., sqlmap, masscan, python-requests)
DDoS Attack
πΊπΈ
TPI-Abuse
2025-11-24 01:56:09
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 20:56:04.483111 2025] [security2:error] [pid 18549:tid 18549] [client 161.123.151.247:44241] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||linnardfinancial.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "linnardfinancial.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aSO7NDZGPMylxeJzeFvHggAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-09-10 06:09:52
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 10 02:09:46.416971 2025] [security2:error] [pid 18304:tid 18304] [client 161.123.151.247:48889] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.airei.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.airei.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aMEWKgL32Z0x6AV63Y0eYwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-08-29 06:28:51
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 29 02:28:44.176038 2025] [security2:error] [pid 6903:tid 6903] [client 161.123.151.247:57751] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bordalo-es.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bordalo-es.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aLFInIDLBLAnQbDK4jHIOgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TheMadBeaker
2025-06-18 05:10:55
(1 year ago)
Fail2Ban Ban Triggered
HTTP Exploit Attempt
Brute-Force
Web App Attack
πΊπΈ
PulseServers
2025-06-02 08:48:07
(1 year ago)
Malicious Web Traffic - Exploit probing, request floods, etc. on a server hosted by PulseServers.com ...
show more
Malicious Web Traffic - Exploit probing, request floods, etc. on a server hosted by PulseServers.com - ISUS1
...
show less
DDoS Attack
Exploited Host
πΊπΈ
TPI-Abuse
2025-05-30 17:03:03
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 161.123.151.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 30 13:02:56.947468 2025] [security2:error] [pid 487539:tid 487539] [client 161.123.151.247:38281] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.dietzengineers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.dietzengineers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aDnkwHOExVX6FqCh7RXcCAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack