Anonymous
2026-06-14 04:02:24
(1 day ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
Anonymous
2026-06-13 16:24:33
(1 day ago)
...
Web App Attack
๐ฉ๐ช
4server
2026-06-13 14:48:30
(1 day ago)
[SatJun1316:48:28.1959782026][security2:error][pid1246024:tid1246058][client182.253.48.18:0]ModSecur ...
show more
[SatJun1316:48:28.1959782026][security2:error][pid1246024:tid1246058][client182.253.48.18:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"titancapital.ch\"][uri\"/xmlrpc.php\"][unique_id\"ai1tvLWsoH1nQGWLY-Xe3AAAABQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:43:24
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 182.253.48.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.253.48.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:43:20.635663 2026] [security2:error] [pid 31709:tid 31709] [client 182.253.48.18:15468] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rwabutazafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rwabutazafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ai1QaA2CVdQsQvTFiqKU7wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:18:14
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 182.253.48.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.253.48.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:18:06.206549 2026] [security2:error] [pid 28176:tid 28176] [client 182.253.48.18:3279] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||proyectomanhattan.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "proyectomanhattan.info"] [uri "/wp-json/wp/v2/users"] [unique_id "ai08bla8K6AxkavEexsavgAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
omartin
2026-06-13 11:10:10
(2 days ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 10:39:04
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 182.253.48.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.253.48.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 06:38:59.867041 2026] [security2:error] [pid 25354:tid 25372] [client 182.253.48.18:14451] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pilargarciamanzanares.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pilargarciamanzanares.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai0zQ99NmnT3Hu_T22l0IgAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Penny Packer
2026-06-13 05:01:58
(2 days ago)
Fail2Ban apache-tripwires
Web App Attack
Anonymous
2026-01-14 05:59:11
(5 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐ณ๐ฑ
exxos
2025-08-29 10:05:23
(9 months ago)
Attacks with Bad user agents
Hacking
Anonymous
2025-02-12 05:47:09
(1 year ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host