Anonymous
2025-03-27 09:59:29
(9 minutes ago)
Scenario: crowdsecurity/http-bf-wordpress_bf
Hacking
Martlark
2025-03-27 09:56:16
(13 minutes ago)
Flask-IPban - exploit URL requested:/wp-includes/ID3/license.txt
Web App Attack
Savvii
2025-03-27 09:24:36
(44 minutes ago)
10 attempts against mh-misc-ban on lunar
Web App Attack
BestFans.com
2025-03-27 08:34:53
(1 hour ago)
Credential brute-force attacks on webpage logins
Brute-Force
jcbriar
2025-03-27 07:50:34
(2 hours ago)
Searching for vulnerable scripts
Hacking
Web App Attack
Anonymous
2025-03-27 07:44:43
(2 hours ago)
(wordpress) Failed wordpress login from 191.96.168.12 (NL/The Netherlands/-)
Brute-Force
DEV-DNS
2025-03-27 07:12:04
(2 hours ago)
(wordpress) Failed wordpress login from 191.96.168.12 (NL/The Netherlands/North Holland/Amsterdam/-/ ... show more (wordpress) Failed wordpress login from 191.96.168.12 (NL/The Netherlands/North Holland/Amsterdam/-/[redacted]) show less
Brute-Force
ps-center
2025-03-27 06:32:29
(3 hours ago)
DIS: Web Attack GET //blog/wp-includes/wlwmanifest.xml
Web Spam
Hacking
Bad Web Bot
Web App Attack
TPI-Abuse
2025-03-27 06:18:19
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 191.96.168.12 (-): 1 in the last 300 secs; Port ... show more (mod_security) mod_security (id:225170) triggered by 191.96.168.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 27 02:18:12.913453 2025] [security2:error] [pid 1267528:tid 1267528] [client 191.96.168.12:58939] [client 191.96.168.12] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.stantontownship.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.stantontownship.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-TtpKLce9N4CzmPIQMDvgAAAAk"] show less
Brute-Force
Bad Web Bot
Web App Attack
Savvii
2025-03-27 06:14:11
(3 hours ago)
10 attempts against mh-misc-ban on tree
Web App Attack
jasperedv.de
2025-03-27 05:57:11
(4 hours ago)
Apache Login - Brutforcing
Brute-Force
Web App Attack
S.O.B.A. Dev.
2025-03-27 05:28:03
(4 hours ago)
Threat Blocked by BeeHive from (ASN:174) (Network:COGENT-174) (Host:soba.dev) (Method:GET) (Protocol ... show more Threat Blocked by BeeHive from (ASN:174) (Network:COGENT-174) (Host:soba.dev) (Method:GET) (Protocol:HTTP/1.1) (Timestamp:2025-03-27T05:28:03Z) show less
Web Spam
Brute-Force
Web App Attack
S.O.B.A. Dev.
2025-03-27 05:28:02
(4 hours ago)
Web vulnerability scanning
Web Spam
Brute-Force
Web App Attack
TPI-Abuse
2025-03-27 05:12:34
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 191.96.168.12 (-): 1 in the last 300 secs; Port ... show more (mod_security) mod_security (id:225170) triggered by 191.96.168.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 27 01:12:27.340237 2025] [security2:error] [pid 17173:tid 17173] [client 191.96.168.12:45772] [client 191.96.168.12] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mariedjones.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mariedjones.com"] [uri "/wordpress/wp-json/wp/v2/users/"] [unique_id "Z-TeO5hsC3xjO32f8gf0qwAAABs"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-03-27 04:26:38
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 191.96.168.12 (-): 1 in the last 300 secs; Port ... show more (mod_security) mod_security (id:225170) triggered by 191.96.168.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 27 00:26:35.205329 2025] [security2:error] [pid 495891:tid 495891] [client 191.96.168.12:7960] [client 191.96.168.12] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.kobraagencies.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.kobraagencies.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-TTe15Aloef6-Uk0F7qBgAAAA8"] show less
Brute-Force
Bad Web Bot
Web App Attack