π«π·
[email protected]
2026-09-07 10:23:40
(4 days ago)
PrestaShop Security Module: WordPress probe path detected
Web App Attack
π¨πΏ
Countryman
2026-09-05 00:10:02
(6 days ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
πΈπͺ
OnTheEdge
2026-09-04 13:07:53
(1 week ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
πΊπΈ
drewf.ink
2026-08-31 21:54:18
(1 week ago)
[21:54] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gatew ...
show more
[21:54] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gateway fingerprinting/recon)
show less
Web App Attack
πΊπΈ
drewf.ink
2026-08-30 01:19:01
(1 week ago)
[01:19] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gatew ...
show more
[01:19] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gateway fingerprinting/recon)
show less
Web App Attack
π«π·
Sklurk
2026-07-31 01:58:36
(1 month ago)
Web App Attack
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 month ago)
Apache probe; attempts=16; exact paths: /xmlrpc.php
Web App Attack
Anonymous
2026-07-27 02:40:59
(1 month ago)
[ssd5.kdns.gr] httpd-login-spray-site: sites=www.cancelletto.gr; logs=/var/log/httpd/domains/cancell ...
show more
[ssd5.kdns.gr] httpd-login-spray-site: sites=www.cancelletto.gr; logs=/var/log/httpd/domains/cancelletto.gr.log; samples=site_wide=true | distinct_ips=50 | /wp-login.php
show less
Hacking
Web App Attack
π²π½
Centynova Corp.
2026-07-24 02:50:33
(1 month ago)
Blocked by threat detection service. Centynova Security [Fuerza bruta y Ataque a servicios web]
Brute-Force
Web App Attack
π±π»
garmtech.com
2026-03-30 06:08:56
(5 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
π¦πΊ
MAGIC
2025-12-07 00:07:52
(9 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-11-29 01:52:49
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 20:52:32.158981 2025] [security2:error] [pid 21769:tid 21769] [client 216.26.236.200:9365] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abuscalledfreedom.com"] [uri "/.git/config"] [unique_id "aSpR4C-MrK_p2eA3TQA3mQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-29 01:02:51
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 20:02:47.273069 2025] [security2:error] [pid 14203:tid 14203] [client 216.26.236.200:39625] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abramczuk.me"] [uri "/wp-config.php.bak"] [unique_id "aSpGN2GIqEE2k1u9noIDKAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-28 20:11:40
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 15:11:04.087698 2025] [security2:error] [pid 23379:tid 23379] [client 216.26.236.200:33889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aarentes.com"] [uri "/.env.bak"] [unique_id "aSoB2BYuV0o920vU-3h4nAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-28 17:32:38
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 12:32:27.598180 2025] [security2:error] [pid 28160:tid 28160] [client 216.26.236.200:51239] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "americaaborn.com"] [uri "/.env.development"] [unique_id "aSncq0KdMo6Zs4sjNtTw7QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack