๐บ๐ธ
Epimetheus
2026-09-30 13:44:32
(1 day ago)
Unauthorized access attempts:
[POST] /wp-json/batch/v1
[POST] /wp-json/batch/v1
UA: Mozilla/5.0 (X ...
show more
Unauthorized access attempts:
[POST] /wp-json/batch/v1
[POST] /wp-json/batch/v1
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Web App Attack
๐ต๐ฑ
Budyn
2026-09-30 11:24:30
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Unknown Bot / General Web Recon. ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Unknown Bot / General Web Recon. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: ldap.teddypot.site | URI: /wp-json/batch/v1 | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-09-30 08:01:23
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
ASN: 14061 (DigitalOcean, LLC ...
show more
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
ASN: 14061 (DigitalOcean, LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /wp-login.php
Timestamp: 2026-09-30T06:07:15Z
Ray ID: a4310bda7dca5c0b
UA: Mozilla/5.0
show less
Bad Web Bot
๐บ๐ธ
bigwavedave
2026-09-30 06:39:46
(1 day ago)
Wordpress Attack
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-30 06:37:14
(1 day ago)
[ti-02ra] WordPress login brute-force: 4 suspicious requests detected by fail2ban jail apache-wordpr ...
show more
[ti-02ra] WordPress login brute-force: 4 suspicious requests detected by fail2ban jail apache-wordpress. Example: 170.64.211.48 - - [30/Sep/2026:08:31:14 +0200] "POST /wp-login.php HTTP/1.1" 200 15967 "-" "Mozilla/5.0"
170.64.211.48 - - [30/Sep/2026:08:32:57 +0200] "POST /wp-login.php HTTP/1.1" 200 12401 "-" "Mozilla/5.0"
170.64.211.48 - - [30/Sep/2026:08:34:45 +0200] "POST /wp-login.php HTTP/1.1" 200 12401 "-" "Mozilla/5.0"
170.64.211.48 - - [30/Sep/2026:08:36:54 +0200] "POST /wp-login.php HTTP/1.1" 200 15966 "-" "Mozilla/5.0"
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-30 06:36:17
(1 day ago)
wp-login request blocked, no referer. Pattern match "wp-login.php" at REQUEST_URI. (88020-197)
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-09-30 06:24:14
(1 day ago)
[30/Sep/2026:09:24:14 +0300] -- 170.64.211.48 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-l ...
show more
[30/Sep/2026:09:24:14 +0300] -- 170.64.211.48 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-login.php HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-30 06:21:13
(1 day ago)
Scanning for web/db/file exploits on novuniek.nl
SQL Injection
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-30 06:01:36
(1 day ago)
Web exploit attempt | method: GET | path: / | query: author=1, author=2 | ua: Mozilla/5.0
Hacking
Web App Attack
๐บ๐ธ
Epimetheus
2026-09-30 05:52:28
(1 day ago)
Zombie network / Bot scanner detected:
[GET] /wp-login.php
UA: Mozilla/5.0
Bad Web Bot
Exploited Host
Web App Attack
๐ต๐ฑ
Budyn
2026-09-30 05:45:58
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: ldap.teddypot.site | URI: /wp-login.php | UA: Mozilla/5.0 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-09-23 08:13:15
(1 week ago)
(wp_login) REGOLA 1 - WP Login Attack 170.64.211.48 (AU/Australia/-): 5 in the last 3600 secs; Ports ...
show more
(wp_login) REGOLA 1 - WP Login Attack 170.64.211.48 (AU/Australia/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 170.64.211.48 - - [23/Sep/2026:10:08:04 +0200] "POST /wp-login.php HTTP/2.0" 200 4804 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:10:09:22 +0200] "POST /wp-login.php HTTP/2.0" 200 4802 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:10:10:40 +0200] "POST /wp-login.php HTTP/2.0" 200 4801 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:10:11:58 +0200] "POST /wp-login.php HTTP/2.0" 200 4808 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:10:13:14 +0200] "POST /wp-login.php HTTP/2.0" 200 4800 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
show less
Port Scan
๐ฉ๐ช
maxpower
2026-09-23 07:54:04
(1 week ago)
(wp_login) REGOLA 1 - WP Login Attack 170.64.211.48 (AU/Australia/-): 5 in the last 3600 secs; Ports ...
show more
(wp_login) REGOLA 1 - WP Login Attack 170.64.211.48 (AU/Australia/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 170.64.211.48 - - [23/Sep/2026:09:48:55 +0200] "POST /wp-login.php HTTP/2.0" 200 4804 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:09:50:12 +0200] "POST /wp-login.php HTTP/2.0" 200 4809 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:09:51:28 +0200] "POST /wp-login.php HTTP/2.0" 200 4800 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:09:52:44 +0200] "POST /wp-login.php HTTP/2.0" 200 4808 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
170.64.211.48 - - [23/Sep/2026:09:54:02 +0200] "POST /wp-login.php HTTP/2.0" 200 4801 "-" "Mozilla/5.0" "170.64.211.48" host=ctpescara.it
show less
Port Scan
๐ฉ๐ช
maxpower
2026-09-23 07:36:43
(1 week ago)
(PERMBLOCK) 170.64.211.48 (AU/Australia/-) has had more than 4 temp blocks in the last 86400 secs; P ...
show more
(PERMBLOCK) 170.64.211.48 (AU/Australia/-) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ฎ๐น
VHosting
2026-09-23 07:25:06
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack