🇩🇪
FeG Deutschland
2026-09-11 20:18:30
(6 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇲🇽
octageeks.com
2026-09-11 04:09:06
(22 hours ago)
Wordpress malicious attack:[octaflood]
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 11:39:17
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 07:39:12.171329 2026] [security2:error] [pid 14315:tid 14315] [client 213.217.245.15:35766] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cycontechnology.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cycontechnology.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqKW4McAT1Kqrzy8oh_GiwAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 11:03:05
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 07:03:00.125578 2026] [security2:error] [pid 5230:tid 5230] [client 213.217.245.15:47862] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gilgoinn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gilgoinn.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqKOZFl2FpqcprVYLf7vcwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 10:11:56
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 06:11:51.026006 2026] [security2:error] [pid 6599:tid 6599] [client 213.217.245.15:53186] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wallawallafirearmstraining.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wallawallafirearmstraining.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqKCZzMd_U4OO4enBWt3OwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-10 08:40:14
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:28:23
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 213.217.245.15 (c245-15.i03-14.onvol.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:28:18.881454 2026] [security2:error] [pid 1248:tid 1317] [client 213.217.245.15:34830] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||plumeraproductions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "plumeraproductions.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBh0vVXKXnwOLXFzoLVPwAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-08 19:24:33
(3 days ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-login.php | 2026-09-08 19:2 ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-login.php | 2026-09-08 19:24 UTC
show less
Port Scan
Web App Attack
🇩🇪
FeG Deutschland
2026-09-08 18:42:17
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇪🇸
el-brujo
2026-08-27 17:46:07
(2 weeks ago)
HTTP DDoS Attack Layer 7
DDoS Attack