๐ฉ๐ช
CELOS-SOC
2026-07-22 04:30:28
(13 hours ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
๐ซ๐ท
edoram
2026-07-21 22:31:38
(19 hours ago)
Firewall probe / distributed scan detected by honeypot. 25 connection attempts in 24h.
Port Scan
Web App Attack
๐ฉ๐ช
CELOS-SOC
2026-07-21 04:30:13
(1 day ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
๐ซ๐ท
edoram
2026-07-21 04:17:25
(1 day ago)
Firewall probe / distributed scan detected by honeypot. 8 connection attempts in 24h.
Port Scan
Web App Attack
๐ซ๐ท
edoram
2026-07-19 22:39:36
(2 days ago)
Firewall probe / distributed scan detected by honeypot. 9 connection attempts in 24h.
Port Scan
Web App Attack
๐ฉ๐ช
CELOS-SOC
2026-07-18 16:30:12
(4 days ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
๐ซ๐ท
edoram
2026-07-18 16:10:28
(4 days ago)
Firewall probe / distributed scan detected by honeypot. 8 connection attempts in 24h.
Port Scan
Web App Attack
๐ฉ๐ช
CELOS-SOC
2026-07-13 16:30:17
(1 week ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
๐ฉ๐ช
CELOS-SOC
2026-07-12 08:30:56
(1 week ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
๐ฉ๐ช
CELOS-SOC
2026-07-11 04:30:57
(1 week ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-04 03:07:03
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 23:06:55.203557 2026] [security2:error] [pid 29552:tid 29552] [client 162.252.55.231:32005] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wurkroom.biz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wurkroom.biz"] [uri "/wp-json/wp/v2/users"] [unique_id "akh4z_Q2bFkgrCWvrbv9rQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-03 06:39:54
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 02:39:49.801425 2026] [security2:error] [pid 26062:tid 26062] [client 162.252.55.231:30711] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rockinr.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rockinr.org"] [uri "/wp-json/wp/v2/users"] [unique_id "akdZNaoTu2eVUH3LEKadfAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-02 21:15:40
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 17:15:35.962010 2026] [security2:error] [pid 3791:tid 3791] [client 162.252.55.231:30415] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||barkatthemoonpetsitting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "barkatthemoonpetsitting.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akbU90rXfz9DzpELrjAcfQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-01 12:13:12
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 162.252.55.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 08:13:04.399807 2026] [security2:error] [pid 579:tid 711] [client 162.252.55.231:58385] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sparkhypnotherapy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sparkhypnotherapy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akUEUP4shTFUQsCQMyX6xwAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-19 18:05:56
(1 month ago)
Abuse Detected (1)
Brute-Force
Web App Attack