๐บ๐ธ
TPI-Abuse
2023-12-22 22:50:54
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 22 17:50:51.150402 2023] [security2:error] [pid 28186] [client 2001:41d0:403:2d07:::53214] [client 2001:41d0:403:2d07::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||yuichiro.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "yuichiro.us"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZYYSy6v2As1axWoSqSS_KQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2023-12-22 19:49:50
(2 years ago)
2001:41d0:403:2d07:: - - [22/Dec/2023:12:49:50 -0700] "GET /wp-login.php HTTP/1.1" 404 4357 "-" "Moz ...
show more
2001:41d0:403:2d07:: - - [22/Dec/2023:12:49:50 -0700] "GET /wp-login.php HTTP/1.1" 404 4357 "-" "Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:94.0) Gecko/20100101 Firefox/95.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-22 18:23:51
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 22 13:23:47.052415 2023] [security2:error] [pid 30833] [client 2001:41d0:403:2d07:::39126] [client 2001:41d0:403:2d07::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.fgrotary.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.fgrotary.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZYXUM-NyTFnq62_JRTUuAAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-22 17:34:19
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 22 12:34:14.451356 2023] [security2:error] [pid 32113] [client 2001:41d0:403:2d07:::34974] [client 2001:41d0:403:2d07::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.247.fishing|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.247.fishing"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZYXIlh7SUN-YmSailPEktAAAABk"], referer: http://www.247.fishing///wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-22 17:10:37
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 22 12:10:33.540340 2023] [security2:error] [pid 25137] [client 2001:41d0:403:2d07:::50794] [client 2001:41d0:403:2d07::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||riser-astrology.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "riser-astrology.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZYXDCTQ7nDvCC13kp3JHcAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-22 16:55:27
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 22 11:55:21.659815 2023] [security2:error] [pid 31593] [client 2001:41d0:403:2d07:::43360] [client 2001:41d0:403:2d07::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nihlabs.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nihlabs.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZYW_ef8dsgJSMcgLSddEzQAAABA"], referer: http://www.nihlabs.org///wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Mr-Money
2023-12-22 16:48:17
(2 years ago)
2001:41d0:403:2d07:: - - [22/Dec/2023:17:48:17 +0100] "GET //wp-login.php HTTP/1.1" 404 4539 "http:/ ...
show more
2001:41d0:403:2d07:: - - [22/Dec/2023:17:48:17 +0100] "GET //wp-login.php HTTP/1.1" 404 4539 "http://rnext.de/wp-login.php" "Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:94.0) Gecko/20100101 Firefox/95.0"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
jasperedv.de
2023-12-22 10:51:46
(2 years ago)
Apache Login - Brutforcing
Brute-Force
Web App Attack
๐บ๐ธ
dtorrer
2023-12-22 09:36:56
(2 years ago)
Dictionary attack on login resource.
Brute-Force
๐ฆ๐บ
weblite
2023-12-22 09:18:31
(2 years ago)
WP_AUTHOR_SCANNING WP_XMLRPC_ABUSE
Brute-Force
Web App Attack
๐ณ๐ฑ
maxxsense
2023-12-22 07:37:10
(2 years ago)
(wordpress) Failed wordpress login from 2001:41d0:403:2d07:: (FR/France/-)
Brute-Force
๐ซ๐ท
Max la Menace
2023-12-22 05:38:12
(2 years ago)
Wordpress Attack (P)
Web App Attack
๐ฉ๐ช
Ba-Yu
2023-12-22 04:58:24
(2 years ago)
WP-xmlrpc exploit
Web Spam
Blog Spam
Hacking
Exploited Host
Web App Attack
๐ฉ๐ช
iNetWorker
2023-12-22 04:36:12
(2 years ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-22 04:13:51
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:2d07:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 21 23:13:48.077730 2023] [security2:error] [pid 21841] [client 2001:41d0:403:2d07:::42692] [client 2001:41d0:403:2d07::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.lightbender.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.lightbender.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZYUM_PlbeExWXQ_Tr1kY3AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack