๐ฒ๐ฝ
octageeks.com
2026-09-21 04:16:42
(1 week ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 23:26:06
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in th ...
show more
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:26:03.362418 2026] [security2:error] [pid 9422:tid 9526] [client 198.46.83.28:34542] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||strengthsmatter.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "strengthsmatter.com"] [uri "/wp-json/wp/v2/users"] [unique_id "arBri3Dkd7P-zepcZVqiMgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:25:09
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in th ...
show more
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:25:06.558172 2026] [security2:error] [pid 9731:tid 9731] [client 198.46.83.28:60074] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lightbender.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lightbender.net"] [uri "/wp-json/wp/v2/users"] [unique_id "arBdQhDYY6k3K7hfca0pUwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:07:20
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in th ...
show more
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:07:14.704847 2026] [security2:error] [pid 26565:tid 26565] [client 198.46.83.28:59918] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.cubbylure.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.cubbylure.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq--Yox6j17WFmRdNH3TJwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-19 23:25:27
(1 week ago)
198.46.83.28 - - [19/Sep/2026:23:23:51 +0000] "GET /?author=2 HTTP/1.1" 403 1168 "-" "Mozilla/5.0 (W ...
show more
198.46.83.28 - - [19/Sep/2026:23:23:51 +0000] "GET /?author=2 HTTP/1.1" 403 1168 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:77.0) Gecko/20100101 Firefox/77.0" "-" edge="198.46.83.28"
198.46.83.28 - - [19/Sep/2026:23:24:25 +0000] "GET /?author=3 HTTP/1.1" 403 1169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:87.0) Gecko/20100101 Firefox/87.0" "-" edge="198.46.83.28"
198.46.83.28 - - [19/Sep/2026:23:24:26 +0000] "GET /?author=4 HTTP/1.1" 403 1169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:83.0) Gecko/20100101 Firefox/83.0" "-" edge="198.46.83.28"
198.46.83.28 - - [19/Sep/2026:23:24:59 +0000] "GET /?author=5 HTTP/1.1" 403 1169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:77.0) Gecko/20100101 Firefox/77.0" "-" edge="198.46.83.28"
198.46.83.28 - - [19/Sep/2026:23:25:00 +0000] "GET /?author=6 HTTP/1.1" 403 1169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:53.0) Gecko/20100101 Firefox/53.0" "-" edge="198.46.83.28"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 21:33:20
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in th ...
show more
(mod_security) mod_security (id:225170) triggered by 198.46.83.28 (vps56675.servconfig.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 17:33:13.080112 2026] [security2:error] [pid 5336:tid 5336] [client 198.46.83.28:53456] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.reyadecostarica.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.reyadecostarica.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq7_mUqIk87rgk0MSpD47AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-19 17:37:11
(1 week ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-131)
Hacking
๐ซ๐ท
LRob
2026-09-19 16:24:25
(1 week ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: / | query: author=1 | 2026-09-19 16:24 UTC
show less
Hacking
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-17 22:18:27
(1 week ago)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-09-17 16:05:08
(1 week ago)
Abuse Detected (20)
Brute-Force
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-17 11:04:12
(1 week ago)
excessive HTTP 404 errors
Bad Web Bot
๐ฉ๐ช
LRob
2026-09-17 10:40:07
(1 week ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users | 2026-09-17 10:40 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-09-17 10:05:09
(1 week ago)
Abuse Detected (10)
Brute-Force
Web App Attack
๐ฉ๐ช
stinpriza
2026-09-17 09:01:02
(1 week ago)
WP Authentication attempt for unknown user
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-17 08:43:28
(1 week ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-197)
Hacking