๐ฒ๐ฝ
octageeks.com
2026-09-18 04:15:30
(2 days ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 02:05:39
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 22:05:35.439196 2026] [security2:error] [pid 14817:tid 14817] [client 197.242.67.55:42668] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||natchezbicycle.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "natchezbicycle.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqycbwM7DYlTHbKVaFrP2gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 00:10:36
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 20:10:28.680664 2026] [security2:error] [pid 25116:tid 25116] [client 197.242.67.55:44256] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||humbliaslaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "humbliaslaw.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqyBdOlWWm2P3d62K_SgoQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Omar Martรญnez
2026-09-17 22:44:31
(2 days ago)
197.242.67.55 - - [17/Sep/2026:16:44:30 -0600] "GET /wp-json/wp/v2/users HTTP/1.1" 200 7442 "-" "Moz ...
show more
197.242.67.55 - - [17/Sep/2026:16:44:30 -0600] "GET /wp-json/wp/v2/users HTTP/1.1" 200 7442 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:58.0) Gecko/20100101 Firefox/58.0"
...
show less
Phishing
Email Spam
Blog Spam
๐ฆ๐บ
A.i.D.A.N.N
2026-09-17 22:39:10
(2 days ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-17 21:36:54
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-09-17 19:08:52
(2 days ago)
(wp_user_enum) srv104 WordPress User Enumeration 197.242.67.55 (ZA/South Africa/dedi431.jnb3.host-h. ...
show more
(wp_user_enum) srv104 WordPress User Enumeration 197.242.67.55 (ZA/South Africa/dedi431.jnb3.host-h.net): 8 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 15:57:57
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 11:57:49.712423 2026] [security2:error] [pid 6719:tid 6719] [client 197.242.67.55:59630] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bergopro.co.uk|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bergopro.co.uk"] [uri "/wp-json/wp/v2/users"] [unique_id "aqwN_Tt1FF4Z2yQOVfO5BwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 15:26:03
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 11:25:55.489676 2026] [security2:error] [pid 18640:tid 18640] [client 197.242.67.55:59534] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||phalanxemail.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "phalanxemail.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aqwGg8BIJyyhSdyXm63LYgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 13:19:38
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 09:19:32.938278 2026] [security2:error] [pid 2028:tid 2028] [client 197.242.67.55:55936] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||feministvoice.blog|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "feministvoice.blog"] [uri "/wp-json/wp/v2/users"] [unique_id "aqvo5G6Fn010wMlNHGaz8QAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-17 11:45:30
(3 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 10:55:58
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 06:55:55.374470 2026] [security2:error] [pid 13364:tid 13364] [client 197.242.67.55:38304] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jazziientertainment.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jazziientertainment.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqvHO9jTAozrLm977-sYVAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 10:32:06
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 197.242.67.55 (dedi431.jnb3.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 06:31:58.382075 2026] [security2:error] [pid 15636:tid 15636] [client 197.242.67.55:47856] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.apexhumanoidrobots.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.apexhumanoidrobots.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqvBnm0fXmP5wcyHS1h2AQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-17 10:10:04
(3 days ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-193)
Hacking
๐ฉ๐ช
LRob
2026-09-17 09:27:24
(3 days ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users | 2026-09-17 09:27 UTC
show less
Hacking
Web App Attack