๐ช๐ธ
librebit
2026-07-17 02:09:53
(1 week ago)
Brute force
Brute-Force
๐ช๐ธ
librebit
2026-07-15 12:41:51
(1 week ago)
Brute force
Brute-Force
๐ช๐ธ
librebit
2026-07-13 05:45:58
(2 weeks ago)
Brute force
Brute-Force
๐ฉ๐ช
LRob
2026-06-27 10:15:06
(1 month ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐ฉ๐ช
dayda.net
2026-06-25 01:24:19
(1 month ago)
query: resetpwd') AND AND/**/1898=(SELECT/**/UPPER(XMLType(CHR(60)||CHR(58)||'~'||(SELECT/**/(CASE/* ...
show more
query: resetpwd') AND AND/**/1898=(SELECT/**/UPPER(XMLType(CHR(60)||CHR(58)||'~'||(SELECT/**/(CASE/**/WHEN/**/(1898=1898)/**/THEN/**/1/**/ELSE/**/0/**/END)/**/FROM/**/DUAL)||'~'||CHR(62)))/**/FROM/**/DUAL)-- -
show less
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-05-17 21:29:16
(2 months ago)
Excessive 404/403 errors
Brute-Force
๐ซ๐ท
Lunix
2026-05-09 13:39:49
(2 months ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-16 22:06:08
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 16 18:06:02.755796 2026] [security2:error] [pid 1491027:tid 1491027] [client 185.168.29.147:54193] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||breinesberger.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "breinesberger.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeFdSpwNtM0DbCV8Dxx5ngAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 09:31:03
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 05:30:58.915390 2026] [security2:error] [pid 15929:tid 15929] [client 185.168.29.147:44475] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||staben.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "staben.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acJZ0sYhUAKvDd9Q7yYZmAAAABQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-03-21 23:04:31
(4 months ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-03-12 16:39:29
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 12 12:39:24.718394 2026] [security2:error] [pid 12842:tid 12842] [client 185.168.29.147:27039] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||auguststoten.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "auguststoten.com"] [uri "/wp-json/wp/v2/users"] [unique_id "abLsPFwo6n1xIApFX3gUjwAAACc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2026-03-11 15:41:03
(4 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-01 09:26:05
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 185.168.29.147 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 01 04:25:58.775361 2026] [security2:error] [pid 14434:tid 14434] [client 185.168.29.147:60239] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cormanleigh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cormanleigh.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaQGJmU-vFMU4rj2Zy6B4AAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack