🇲🇾
Rizzy
2026-08-29 22:47:05
(2 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇫🇷
tecnicorioja
2026-08-29 22:01:23
(3 hours ago)
wp-login attack [29/Aug/2026:17:18:11
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-08-29 16:48:31
(8 hours ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
🇩🇪
dbmwebdesign
2026-08-29 14:15:08
(10 hours ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
Anonymous
2026-08-29 12:35:11
(12 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
🇩🇪
wpadm4
2026-08-29 11:15:21
(13 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 08:54:33
(16 hours ago)
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 04:54:29.961327 2026] [security2:error] [pid 5030:tid 5030] [client 198.54.114.119:56404] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gaeltv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gaeltv.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apKeRUOVGFrX4YmzZMBslQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-08-29 07:09:49
(17 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 07:04:23
(17 hours ago)
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 03:04:17.264611 2026] [security2:error] [pid 19078:tid 19078] [client 198.54.114.119:54104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||richmondrents.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "richmondrents.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apKEcV_zZMP_RAC6BFbfHwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
AWW-Admin
2026-08-29 06:47:33
(18 hours ago)
(wordpress) Failed wordpress login from 198.54.114.119 (US/United States/server62.web-hosting.com)
Brute-Force
Anonymous
2026-08-28 21:08:21
(1 day ago)
Failed Wordpress Logins
Web App Attack
Anonymous
2026-08-28 20:15:19
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇪🇸
ofm-abuse
2026-08-28 18:37:55
(1 day ago)
Brute-force
...
Brute-Force
Web App Attack
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-28 18:24:47
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 14:24:43.152925 2026] [security2:error] [pid 18455:tid 18455] [client 198.54.114.119:51410] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||clipper1970.com.jimgrenier.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "clipper1970.com.jimgrenier.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apHSa8mRg1noI7ibSfctngAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 17:23:26
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 198.54.114.119 (server62.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 13:23:21.982793 2026] [security2:error] [pid 10875:tid 10896] [client 198.54.114.119:47238] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||permisos.pr|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "permisos.pr"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apHECY5wcYR3aSYATe4YswAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack