Anonymous
2026-10-05 20:00:31
(14 hours ago)
apache vulnerability scan
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-10-05 19:49:29
(14 hours ago)
[Tue Oct 06 06:49:28.630760 2026] [security2:error] [pid 158113] [client 180.243.14.158:56994] [clie ...
show more
[Tue Oct 06 06:49:28.630760 2026] [security2:error] [pid 158113] [client 180.243.14.158:56994] [client 180.243.14.158] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "levellapromotions.com.au"] [uri "/"] [unique_id "asP_SN1L0nRPbVIs3959_AAAAAU"]
...
show less
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-10-05 18:42:53
(15 hours ago)
[Tue Oct 06 05:42:52.832874 2026] [security2:error] [pid 152800] [client 180.243.14.158:61303] [clie ...
show more
[Tue Oct 06 05:42:52.832874 2026] [security2:error] [pid 152800] [client 180.243.14.158:61303] [client 180.243.14.158] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "levellapromotions.com.au"] [uri "/"] [unique_id "asPvrH1YxL2C9IXFvuEl3AAAAAk"]
...
show less
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-10-04 01:43:45
(2 days ago)
[Sun Oct 04 12:43:45.333182 2026] [security2:error] [pid 839802] [client 180.243.14.158:64696] [clie ...
show more
[Sun Oct 04 12:43:45.333182 2026] [security2:error] [pid 839802] [client 180.243.14.158:64696] [client 180.243.14.158] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/"] [unique_id "asGvUbeq00RB7c8bhA07vwAAAAg"]
...
show less
Web App Attack
๐ฑ๐น
NotACaptcha
2026-10-03 23:13:44
(2 days ago)
webserver:443 [04/Oct/2026] "GET /plugins/editors/jce/jce.xml HTTP/1.1" 404 5670 "-" "Mozilla/5.0 ( ...
show more
webserver:443 [04/Oct/2026] "GET /plugins/editors/jce/jce.xml HTTP/1.1" 404 5670 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/137.0.0.0 Safari/537.36"
webserver:443 [04/Oct/2026] "GET / HTTP/1.1" 200 11466 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.5 Safari/605.9.17"
show less
Web App Attack
Anonymous
2026-10-03 19:02:10
(2 days ago)
apache vulnerability scan
Web App Attack
๐ซ๐ท
_tom
2026-09-30 09:41:02
(6 days ago)
Automated report (2026-09-30T11:41:02+02:00). Scraper detected.
Bad Web Bot
๐ซ๐ท
security.rdmc.fr
2026-08-21 13:13:38
(1 month ago)
Port Scan Attack proto:TCP src:47322 dst:23
Port Scan
๐ง๐ท
noconex
2026-08-21 06:49:11
(1 month ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 180.243.14 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 180.243.14.158
show less
Port Scan
Brute-Force
SSH
๐บ๐ธ
MPL
2026-08-21 02:16:08
(1 month ago)
tcp/23 (3 or more attempts)
Port Scan
๐บ๐ธ
Axel
2026-08-20 22:38:04
(1 month ago)
Blocked by UFW on LAXHH [22/tcp] | SPT: 44908 | TTL: 51 | LEN: 40 | TOS: 0x00 โข Reported by: github. ...
show more
Blocked by UFW on LAXHH [22/tcp] | SPT: 44908 | TTL: 51 | LEN: 40 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
SSH
๐จ๐พ
pashait
2026-08-20 15:04:44
(1 month ago)
Auto-blocked by Seczar SecureOps โ High-Risk Port Probe (admin-managed entries) โ SSH (6 events in 5 ...
show more
Auto-blocked by Seczar SecureOps โ High-Risk Port Probe (admin-managed entries) โ SSH (6 events in 5min) at 2026-08-20 15:04
show less
Web App Attack
๐บ๐ธ
xmission.com
2026-08-20 06:21:06
(1 month ago)
Blocked by UFW (TCP on 23)
Source port: 43608
TTL: 238
Packet length: 44
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 23)
Source port: 43608
TTL: 238
Packet length: 44
TOS: 0x00
This report (for 180.243.14.158) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Hacking
Brute-Force
๐ฉ๐ช
shr4pnel
2026-08-20 05:42:27
(1 month ago)
SSH login attempts (endlessh): 2026-08-20T05:37:22.973Z ACCEPT host=::ffff:180.243.14.158 port=33864 ...
show more
SSH login attempts (endlessh): 2026-08-20T05:37:22.973Z ACCEPT host=::ffff:180.243.14.158 port=33864 fd=6 n=3/4096
show less
Brute-Force
SSH
Anonymous
2026-08-20 05:13:53
(1 month ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking