๐ฌ๐ง
openstrike.co.uk
2024-07-29 05:12:23
(1 year ago)
26 attacks on Wordpress URLs, PHP URLs:
GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1
GET //xmlrpc. ...
show more
26 attacks on Wordpress URLs, PHP URLs:
GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1
GET //xmlrpc.php?rsd HTTP/1.1
show less
Web App Attack
Anonymous
2024-07-29 04:27:27
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-28 20:27:06
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 20.244.107.253 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 20.244.107.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 28 16:27:01.769628 2024] [security2:error] [pid 23816:tid 23816] [client 20.244.107.253:58458] [client 20.244.107.253] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jaragoodrich.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jaragoodrich.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZqaplUDxKaL85YU7BJ_sjwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
Jim Keir
2024-07-28 07:06:29
(1 year ago)
2024-07-28 07:06:29 20.244.107.253 File scanning, blocking 20.244.107.253 for 5 minutes
Web App Attack
Anonymous
2024-07-28 06:39:20
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2024-07-27 20:06:46
(1 year ago)
10 attempts against mh-misc-ban on peach
Web App Attack
๐ณ๐ฑ
Savvii
2024-07-27 19:42:00
(1 year ago)
11 attempts against mh-misc-ban on peach
Web App Attack
๐ซ๐ท
John
2024-07-27 16:01:00
(1 year ago)
persistant attempts to exploit system resources, eg /.git/config, /codebuild.yml, /administrator, et ...
show more
persistant attempts to exploit system resources, eg /.git/config, /codebuild.yml, /administrator, etc, etc
show less
Hacking
Bad Web Bot
๐ซ๐ท
COMAITE
2024-07-27 15:37:04
(1 year ago)
Multiple web server 400 error codes from same source ip 20.244.107.253.
Web App Attack
๐ซ๐ท
John
2024-07-27 09:31:00
(1 year ago)
attempting to exploit system resources, eg wp-includes/wlwmanifest.xml, xmlrpc.php. etc
Hacking
Bad Web Bot
๐บ๐ธ
WebpodsLLC
2024-07-27 08:55:00
(1 year ago)
Direction: in Trigger: LF_MODSEC;
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-27 02:42:23
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 20.244.107.253 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 20.244.107.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 26 22:42:17.292172 2024] [security2:error] [pid 4154:tid 4154] [client 20.244.107.253:57728] [client 20.244.107.253] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.starvationacres.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.starvationacres.us"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZqReicRQnfquM6wM-GpK8wAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฑ
Dolphi
2024-07-26 19:22:15
(1 year ago)
POST //xmlrpc.php
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-26 13:54:43
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 20.244.107.253 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 20.244.107.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 26 09:54:36.798099 2024] [security2:error] [pid 683:tid 683] [client 20.244.107.253:64864] [client 20.244.107.253] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nickp.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nickp.us"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZqOqnImlP9YsP7vMKiaGDQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2024-07-26 05:04:05
(1 year ago)
10 attempts against mh-misc-ban on grain
Web App Attack