๐ช๐ธ
alferez
2026-06-11 04:16:19
(26 minutes ago)
Hacking
Exploited Host
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-11 03:48:38
(54 minutes ago)
Multiple WAF Violations
Brute-Force
Web App Attack
Anonymous
2026-06-11 03:34:14
(1 hour ago)
2.50.173.46 - - [11/Jun/2026:11:34:13 +0800] "POST /xmlrpc.php HTTP/1.1" 200 403 "-" "WordPress.com; ...
show more
2.50.173.46 - - [11/Jun/2026:11:34:13 +0800] "POST /xmlrpc.php HTTP/1.1" 200 403 "-" "WordPress.com; https://wordpress.com"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-06-11 01:01:05
(3 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ฎ๐น
Progetto1
2026-06-11 00:15:09
(4 hours ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 22:19:04
(6 hours ago)
(mod_security) mod_security (id:240335) triggered by 2.50.173.46 (bba-2-50-173-46.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 2.50.173.46 (bba-2-50-173-46.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 18:18:59.853014 2026] [security2:error] [pid 15559:tid 15559] [client 2.50.173.46:49500] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 2.50.173.46 (+1 hits since last alert)|encuentraunbuenabogado.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "encuentraunbuenabogado.com"] [uri "/xmlrpc.php"] [unique_id "aini08_F2qKVBp5ZE9En6QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
applemooz
2026-06-10 18:30:48
(10 hours ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 14:29:58
(14 hours ago)
(mod_security) mod_security (id:240335) triggered by 2.50.173.46 (bba-2-50-173-46.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 2.50.173.46 (bba-2-50-173-46.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 10:29:51.410823 2026] [security2:error] [pid 5000:tid 5000] [client 2.50.173.46:64093] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 2.50.173.46 (+1 hits since last alert)|method1.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "method1.net"] [uri "/xmlrpc.php"] [unique_id "ail032oKnHU1Lt7WYS6GKQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Marc
2026-06-10 13:57:44
(14 hours ago)
2.50.173.46 - - [10/Jun/2026:15:57:22 +0200] "POST /xmlrpc.php HTTP/1.1" 200 3404 "-" "Jetpack by Wo ...
show more
2.50.173.46 - - [10/Jun/2026:15:57:22 +0200] "POST /xmlrpc.php HTTP/1.1" 200 3404 "-" "Jetpack by WordPress.com (Jetpack 13.0; WordPress 6.3)" 2.50.173.46 - - [10/Jun/2026:15:57:32 +0200] "POST /xmlrpc.php HTTP/1.1" 200 3402 "-" "Jetpack by WordPress.com (Jetpack 12.1; WordPress 6.1)" 2.50.173.46 - - [10/Jun/2026:15:57:43 +0200] "POST /xmlrpc.php HTTP/1.1" 200 3403 "-" "WordPress.com; https://wordpress.com"
show less
Brute-Force
Web App Attack
๐ฎ๐ฉ
origrata
2026-06-10 13:43:20
(14 hours ago)
[OGWAF] brute_force attack blocked | severity: high | POST /xmlrpc.php | UA: Jetpack/12.0; WordPress ...
show more
[OGWAF] brute_force attack blocked | severity: high | POST /xmlrpc.php | UA: Jetpack/12.0; WordPress/6.4; http://site47251381.com
show less
Brute-Force
Hacking
Anonymous
2026-06-10 11:10:43
(17 hours ago)
(wordpress) Failed wordpress login from 2.50.173.46 (AE/United Arab Emirates/Abu Dhabi/Abu Dhabi/bba ...
show more
(wordpress) Failed wordpress login from 2.50.173.46 (AE/United Arab Emirates/Abu Dhabi/Abu Dhabi/bba-2-50-173-46.alshamil.net.ae/[redacted])
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-10 10:39:34
(18 hours ago)
(mod_security) mod_security (id:240335) triggered by 2.50.173.46 (bba-2-50-173-46.alshamil.net.ae): ...
show more
(mod_security) mod_security (id:240335) triggered by 2.50.173.46 (bba-2-50-173-46.alshamil.net.ae): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 06:39:27.833230 2026] [security2:error] [pid 358:tid 358] [client 2.50.173.46:49446] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 2.50.173.46 (+1 hits since last alert)|lightbender.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "lightbender.net"] [uri "/xmlrpc.php"] [unique_id "aik-352JSs6M2nj38iYJwwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-10 10:14:57
(18 hours ago)
(xmlrpc_405) XMLRPC-Bot 405 2.50.173.46 (AE/United Arab Emirates/bba-2-50-173-46.alshamil.net.ae)
Hacking
๐ฉ๐ช
grassau.com
2026-06-10 10:14:45
(18 hours ago)
(wordpress) Failed wordpress login from 2.50.173.46 (AE/United Arab Emirates/Abu Dhabi/Abu Dhabi/bba ...
show more
(wordpress) Failed wordpress login from 2.50.173.46 (AE/United Arab Emirates/Abu Dhabi/Abu Dhabi/bba-2-50-173-46.alshamil.net.ae)
show less
Brute-Force
๐ณ๐ฑ
Site.eu
2026-06-10 10:13:37
(18 hours ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH