๐บ๐ธ
EchoGuard
2026-03-08 16:09:35
(5 months ago)
FortiGate SSL VPN login failures
VPN IP
Brute-Force
๐ช๐ธ
Mugen
2026-03-06 23:38:23
(5 months ago)
Unauthorized VPN login attempts
Brute-Force
๐ช๐ธ
Mugen
2026-02-25 10:25:22
(6 months ago)
Unauthorized VPN login attempts
Brute-Force
๐บ๐ธ
Cyber Crusader
2026-02-23 16:03:23
(6 months ago)
Hundreds of Attempts (at least) to Connect to and Access Firewall Ports
Port Scan
Hacking
Brute-Force
๐บ๐ธ
fbarela
2026-02-23 15:00:36
(6 months ago)
FortiGate SSL VPN login failures.
Brute-Force
Hacking
Anonymous
2026-02-23 13:38:40
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.02.23 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.02.23 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-07 12:23:50
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 07 07:23:42.906804 2025] [security2:error] [pid 31950:tid 31950] [client 2.59.60.38:3035] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mike.bickley.name|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mike.bickley.name"] [uri "/wp-json/wp/v2/users"] [unique_id "aQ3kzsGLVQy8hzJBf74OPAAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-07 06:55:41
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 07 01:55:34.278941 2025] [security2:error] [pid 21990:tid 21990] [client 2.59.60.38:27257] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||deanfountain.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "deanfountain.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aQ2X5lQmvlPwJGUbgPojHwAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-07 06:38:24
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 07 01:38:18.829789 2025] [security2:error] [pid 3907749:tid 3907749] [client 2.59.60.38:16817] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||limbertree.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "limbertree.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aQ2T2hvVuSmCNfy_unVKKgAAAA4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-03 02:11:41
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 02 21:11:31.972496 2025] [security2:error] [pid 577:tid 577] [client 2.59.60.38:32549] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kinesiologiaenmovimiento.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kinesiologiaenmovimiento.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aQgPUwpUU4qiwQ3yJ-AZRQAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-02 15:30:59
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 02 10:30:53.718390 2025] [security2:error] [pid 12570:tid 12691] [client 2.59.60.38:20649] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||andyboynton.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "andyboynton.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aQd5LfwyiU2ouVb8wp4zbQAAAIs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2025-11-02 10:27:08
(10 months ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-02 08:50:09
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 02 03:50:02.521670 2025] [security2:error] [pid 27759:tid 27759] [client 2.59.60.38:30743] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aldrich.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aldrich.us"] [uri "/wp-json/wp/v2/users"] [unique_id "aQcbOoFrHTJMJLTOz_JlswAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-02 06:46:28
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 2.59.60.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 02 01:46:20.529628 2025] [security2:error] [pid 24486:tid 24486] [client 2.59.60.38:31089] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||arthuryeung.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "arthuryeung.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aQb-PFCSEp6oDnZburreKQAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2025-11-02 05:03:11
(10 months ago)
Accessed trap at '/xmlrpc.php'
Web App Attack