๐ณ๐ฑ
Site.eu
2026-04-24 20:29:16
(5 months ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-04-24 19:43:33
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 15:43:25.680158 2026] [security2:error] [pid 8379:tid 8379] [client 2002:a890:6feb::a890:6feb:49302] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cubbylure.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cubbylure.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aevH3eonZW8IHkXXAtpY5wAAAAY"], referer: https://wordpress.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-24 17:19:37
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 13:19:30.154197 2026] [security2:error] [pid 906395:tid 906395] [client 2002:a890:6feb::a890:6feb:55551] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||deborahbein.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "deborahbein.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeumItbLMe3EgHtOzxb4bwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Kenshin869
2026-04-24 15:22:32
(5 months ago)
Wordpress unauthorized access attempt
Brute-Force
๐ฉ๐ช
FeG Deutschland
2026-04-24 14:07:15
(5 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ซ๐ท
masterguru
2026-04-24 13:51:48
(5 months ago)
(wordpress) Apache: Failed WordPress login from 168.144.111.235 (US/United States/-): 10 in the last ...
show more
(wordpress) Apache: Failed WordPress login from 168.144.111.235 (US/United States/-): 10 in the last 3600 secs (0-193)
show less
Hacking
๐ณ๐ฑ
wlt-blocker
2026-04-24 13:19:47
(5 months ago)
Unauthorized access to webpage admin
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-04-24 04:15:04
(5 months ago)
2026-04-24 06:10:24 WordPress login error from 168.144.111.235: invalid_username && 2026-04-24 06:10 ...
show more
2026-04-24 06:10:24 WordPress login error from 168.144.111.235: invalid_username && 2026-04-24 06:10:38 WordPress login error from 168.144.111.235: invalid_username && 2026-04-24 06:10:52 WordPress login error from 168.144.111.235: invalid_username && 18 more within 20 minutes
show less
Brute-Force
๐ฉ๐ช
LRob
2026-04-24 01:30:12
(5 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-04-24 01:00:58
(5 months ago)
(PERMBLOCK) 168.144.111.235 (US/United States/-) has had more than 4 temp blocks in the last 86400 s ...
show more
(PERMBLOCK) 168.144.111.235 (US/United States/-) has had more than 4 temp blocks in the last 86400 secs (0-196)
show less
Hacking
๐ณ๐ฑ
Mangelot Hosting
2026-04-24 00:18:29
(5 months ago)
(wp_login_try) srv104 WP Login Attempt 168.144.111.235 (US/United States/-): 10 in the last 3600 sec ...
show more
(wp_login_try) srv104 WP Login Attempt 168.144.111.235 (US/United States/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 22:56:52
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 18:56:46.884350 2026] [security2:error] [pid 27915:tid 27915] [client 2002:a890:6feb::a890:6feb:62324] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ftiptondds.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ftiptondds.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeqjrj25X4WVkHKCDLfCBQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 21:40:06
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 2002:a890:6feb::a890:6feb (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 17:40:01.247060 2026] [security2:error] [pid 243119:tid 243119] [client 2002:a890:6feb::a890:6feb:53012] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gemco-mfg.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gemco-mfg.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeqRsdl6jaIgxsQSyl6dAgAAABI"], referer: https://t.co/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Spidrweb.co.uk
2026-04-23 21:06:40
(5 months ago)
Brute-Force WordPress attack (155.98)
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-04-23 20:22:03
(5 months ago)
Wordfence waf block on fypeducation
Web App Attack