๐ซ๐ท
dynamix
2026-06-12 08:19:40
(14 hours ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 20:11:38
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 16:11:33.717457 2026] [security2:error] [pid 9537:tid 9639] [client 178.20.102.60:54450] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.asetiadi.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.asetiadi.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aihzdcAJdlKOHzFwszyj_QAAAdI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 17:00:07
(3 days ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1, GET /?author=2 HTTP/1.1, GET / HT ...
show more
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1, GET /?author=2 HTTP/1.1, GET / HTTP/1.1, GET /?author=1 HTTP/1.1, GET /?author=3 HTTP/1.1, POST /wp-login.php HTTP/1.1, GET /wp-json/wp/v2/users HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:54:10
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:54:06.746357 2026] [security2:error] [pid 28238:tid 28238] [client 178.20.102.60:50304] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.spacebooger.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.spacebooger.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aie4jt_I-VxWVC6xEwvgngAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:20:40
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:20:35.022862 2026] [security2:error] [pid 6379:tid 6379] [client 178.20.102.60:43808] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.ismaelcavazos.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.ismaelcavazos.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aid4c7bh2cLB0vpB94PI6gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:22:56
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:22:48.590768 2026] [security2:error] [pid 22965:tid 22965] [client 178.20.102.60:34384] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.michelehoop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.michelehoop.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aidq6FhRGBzRmpjUIrQytQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 19:49:25
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 15:49:17.462961 2026] [security2:error] [pid 17567:tid 17567] [client 178.20.102.60:47214] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.humbliaslaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.humbliaslaw.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiXLPXmbz_u2li8M-4GjKQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 17:18:23
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 13:18:20.654406 2026] [security2:error] [pid 28843:tid 28843] [client 178.20.102.60:45306] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bzbdesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bzbdesigns.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiWn3INXxKKhIVTx-JbtmQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 14:09:51
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 10:09:43.155296 2026] [security2:error] [pid 21082:tid 21082] [client 178.20.102.60:39304] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.americanureport.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.americanureport.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiV7p1yeI_VuNym8A-6b8QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-06 00:50:01
(6 days ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 21:29:29
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 17:29:25.995779 2026] [security2:error] [pid 30028:tid 30028] [client 178.20.102.60:36284] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||altoshp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "altoshp.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiM_teGsr8aEZLEBNhYmfwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 19:47:49
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 15:47:42.954188 2026] [security2:error] [pid 15924:tid 15924] [client 178.20.102.60:59202] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.littlecreekrvranch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.littlecreekrvranch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiMn3pOV3ffDXGRB1qeGVwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-05 12:13:31
(1 week ago)
Blocked by CSF 13 firewall - Rule: DE/Germany/srv25.schwarzkuenstler.info
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 10:52:46
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 06:52:42.866792 2026] [security2:error] [pid 19631:tid 19631] [client 178.20.102.60:44522] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.texascottagebakers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.texascottagebakers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiKqetU6h1u3ny6yFeu4wgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 10:30:00
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 178.20.102.60 (srv25.schwarzkuenstler.info): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 06:29:54.107567 2026] [security2:error] [pid 18055:tid 18075] [client 178.20.102.60:56524] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.plumeraproductions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.plumeraproductions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiKlIh35udNYSf-GnlMkfwAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack