๐บ๐ธ
TPI-Abuse
2026-08-27 11:32:35
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 199.188.205.8 (server303.web-hosting.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 199.188.205.8 (server303.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:32:26.943692 2026] [security2:error] [pid 2541:tid 2541] [client 199.188.205.8:48720] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||trinitydent.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "trinitydent.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apAgSn_sSzjbNS_6EVsW5gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-27 10:40:07
(3 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ฎ
JRID
2026-08-27 09:58:44
(4 hours ago)
Detected by CrowdSec + Suricata IDS: automated attack/scan against web servers.
Brute-Force
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-27 09:48:56
(4 hours ago)
cloudlinux2 fail2ban: 2026-08-27 11:43:50,005 fail2ban.filter [1775]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-27 11:43:50,005 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 173.239.240.56 - 2026-08-27 11:43:49cloudlinux2 fail2ban: 2026-08-27 11:43:50,274 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 173.239.240.44 - 2026-08-27 11:43:49cloudlinux2 fail2ban: 2026-08-27 11:43:49,104 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 68.65.121.148 - 2026-08-27 11:43:48cloudlinux2 fail2ban: 2026-08-27 11:44:15,374 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 67.223.118.101 - 2026-08-27 11:44:14cloudlinux2 fail2ban: 2026-08-27 11:44:31,743 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 67.223.118.10 - 2026-08-27 11:44:31cloudlinux2 fail2ban: 2026-08-27 11:44:41,599 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 210.211.125.201 - 2026-08-27 11:44:40cloudlinux2 fail2ban: 2026-08-27 11:44:45,330 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 68.65.121.148 - 2026-08-27 11:44:44cl
show less
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-27 09:05:26
(5 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:59:00
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 199.188.205.8 (server303.web-hosting.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 199.188.205.8 (server303.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:58:56.965957 2026] [security2:error] [pid 12241:tid 12273] [client 199.188.205.8:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mindgardens.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mindgardens.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ao_8UMS9P09TgWZkJSSWIQAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 08:39:37
(5 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 08:37:41
(5 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-08-27 08:26:29
(6 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-08-27 07:20:06
(7 hours ago)
Wordfence waf block on registrymatters
Web App Attack
๐จ๐ฟ
ptlab
2026-08-27 06:45:43
(7 hours ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:39:50
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 199.188.205.8 (server303.web-hosting.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 199.188.205.8 (server303.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:39:44.302721 2026] [security2:error] [pid 9428:tid 9428] [client 199.188.205.8:54572] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.plazahacienda.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.plazahacienda.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ao_bsIDu3bOltwKYj5Cw5AAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐น
Malta
2026-08-27 06:38:10
(7 hours ago)
199.188.205.8 - - [27/Aug/2026:08:38:10 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows N ...
show more
199.188.205.8 - - [27/Aug/2026:08:38:10 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐บ๐ธ
integrantservices.com
2026-08-27 06:29:39
(7 hours ago)
(wordpress) Failed wordpress login from 199.188.205.8 (US/United States/server303.web-hosting.com)
Brute-Force
Anonymous
2026-08-27 06:29:11
(8 hours ago)
Failed Wordpress Logins
Web App Attack