๐ง๐ช
madeit
2026-09-21 22:06:05
(2 days ago)
Web App Attack
๐ง๐ช
cmbplf
2026-09-21 21:13:37
(3 days ago)
36.586 requests from untrusted country (2d1h32m)
Brute-Force
Bad Web Bot
๐ฉ๐ช
LRob
2026-09-20 23:03:40
(3 days ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-login.php | 2026-09-20 23:03 UTC
show less
Hacking
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-20 17:08:01
(4 days ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-20 16:07:02
(4 days ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-20 14:28:22
(4 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /license.txt | 2026-09-20 14:28 UTC
show less
Bad Web Bot
๐ฉ๐ช
HERA - Operations
2026-09-20 09:59:27
(4 days ago)
bau-arge - searching for vulnerable scripts: license.txt 2026/09/20 11:59:27
Web App Attack
๐ซ๐ท
conseilgouz
2026-09-20 09:43:43
(4 days ago)
sce-6 : Trying access system files=>/license.txt(license.txt)
Hacking
๐ณ๐ฑ
Alt255
2026-09-20 04:20:16
(4 days ago)
[ti-04al] WordPress login brute-force: 4 suspicious requests detected by fail2ban jail apache-wordpr ...
show more
[ti-04al] WordPress login brute-force: 4 suspicious requests detected by fail2ban jail apache-wordpress. Example: 178.128.100.90 - - [20/Sep/2026:06:15:15 +0200] "POST /wp-login.php HTTP/1.1" 301 6343 "https://depakjesboot.nl/wp-login.php" "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:120.0) Gecko/20100101 Firefox/120.0"
178.128.100.90 - - [20/Sep/2026:06:16:53 +0200] "POST /wp-login.php HTTP/1.1" 301 6343 "https://depakjesboot.nl/wp-login.php" "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:119.0) Gecko/20100101 Firefox/119.0"
178.128.100.90 - - [20/Sep/2026:06:18:33 +0200] "POST /wp-login.php HTTP/1.1" 301 6343 "https://depakjesboot.nl/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
178.128.100.90 - - [20/Sep/2026:06:20:12 +0200] "POST /wp-login.php HTTP
...
show less
Brute-Force
Web App Attack
๐ต๐ฑ
Budyn
2026-09-20 00:22:59
(4 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: portal.teddypot.cloud | URI: /wp-login.php | UA: Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/121.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-19 20:06:12
(5 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: portal.sweetpuddingtrap.top | URI: /wp-login.php | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-19 15:54:59
(5 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: portal.teddypot.store | URI: /wp-login.php | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-19 15:38:35
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
๐ต๐ฑ
Budyn
2026-09-18 20:56:28
(6 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: status.sweetpuddingtrap.top | URI: /wp-login.php | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.6 Safari/605.1.15 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 19:11:07
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 178.128.100.90 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 178.128.100.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 15:11:03.829051 2026] [security2:error] [pid 20045:tid 20045] [client 178.128.100.90:59079] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||southsideaccountingservices.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "southsideaccountingservices.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq2Mx9WvUkfb8s2Pyyh9yQAAAAU"], referer: https://www.bing.com/
show less
Brute-Force
Bad Web Bot
Web App Attack