Anonymous
2026-06-13 00:07:13
(1 hour ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: ZA, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: ZA, Attack patterns: WordPress scanning, Malicious User-Agent
show less
Bad Web Bot
Web App Attack
Anonymous
2026-06-12 15:20:47
(9 hours ago)
Failed Wordpress Logins
Web App Attack
π³π±
BlueWire Hosting
2026-06-12 15:13:39
(9 hours ago)
Probing websites for vulnerabilities
Web App Attack
π©πͺ
LRob.fr
2026-06-12 14:45:03
(10 hours ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
π³π±
Roderic
2026-06-12 12:55:04
(12 hours ago)
(wordpress-404) Searching for non-existent wordpress installs from 169.239.183.136 (ZA/South Africa/ ...
show more
(wordpress-404) Searching for non-existent wordpress installs from 169.239.183.136 (ZA/South Africa/-/-/-/[redacted])
show less
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-12 03:38:58
(21 hours ago)
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 23:38:47.809527 2026] [security2:error] [pid 22024:tid 22024] [client 169.239.183.136:53098] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.aabondwnc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.aabondwnc.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ait_R80a-uiZKsZfTW2rrgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 02:16:12
(22 hours ago)
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 22:16:05.052534 2026] [security2:error] [pid 9789:tid 9789] [client 169.239.183.136:59528] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.aaattanasio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.aaattanasio.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aitr5YlnfAkGZMDuGiQRQgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
TheCoon
2026-06-11 21:15:01
(1 day ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
πΊπΈ
mnsf
2026-06-11 14:05:28
(1 day ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
π³π±
BlueWire Hosting
2026-06-11 11:47:45
(1 day ago)
Probing websites for vulnerabilities
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-11 10:56:03
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 06:55:57.330337 2026] [security2:error] [pid 18887:tid 18887] [client 169.239.183.136:58207] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.davesievers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.davesievers.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiqUPXwSbGMftQAtQKMvAgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-11 10:30:54
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 169.239.183.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 06:30:46.240347 2026] [security2:error] [pid 17460:tid 17460] [client 169.239.183.136:52632] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.flatchestedmama.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.flatchestedmama.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiqOVpxrP8oW1tNSG-ND3QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ghostwarriors
2026-06-11 10:20:03
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
π©πͺ
todix
2026-06-11 09:53:41
(1 day ago)
Web App Attack Exploid from 169.239.183.136
Web App Attack
πΊπΈ
ph
2026-06-11 09:48:22
(1 day ago)
Bad web bot attempting to run wp-includes on non-WP site
Hacking
Bad Web Bot
Web App Attack