🇺🇸
agenciahypelab.com.br
2026-09-12 10:59:34
(3 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
🇺🇸
ArturShelby
2026-09-11 23:39:52
(14 hours ago)
Suspicious path access: /wp-includes/css/buttons.css
Web App Attack
🇩🇪
juutis
2026-09-11 19:58:15
(18 hours ago)
23.94.155.6 - - [11/Sep/2026:20:01:02 +0200] "POST /wp-login.php HTTP/1.1" 200 9607 "-" "Mozilla/5.0 ...
show more
23.94.155.6 - - [11/Sep/2026:20:01:02 +0200] "POST /wp-login.php HTTP/1.1" 200 9607 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; rv:143.0) Gecko/20100101 Firefox/143.0"
23.94.155.6 - - [11/Sep/2026:21:51:03 +0200] "POST /wp-login.php HTTP/1.1" 200 9607 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; rv:143.0) Gecko/20100101 Firefox/143.0"
23.94.155.6 - - [11/Sep/2026:21:58:13 +0200] "POST /wp-login.php HTTP/1.1" 200 9607 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 Version/17.0 Safari/605.1.15"
show less
Web App Attack
🇺🇸
lostswordfish.com
2026-09-11 19:16:03
(18 hours ago)
Wordfence waf block on registrymatters
Web App Attack
Anonymous
2026-09-11 13:46:36
(1 day ago)
Failed Wordpress Logins
Web App Attack
🇪🇸
masterguru
2026-09-11 06:45:36
(1 day ago)
wp-login request blocked, no referer. Pattern match "wp-login.php" at REQUEST_URI. (5001900-122)
Web App Attack
🇵🇱
Budyn
2026-09-11 03:44:00
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: definitelynotahoneypot.xyz | URI: /wp-login.php | UA: Mozilla/5.0 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇭🇺
kranem
2026-09-10 21:00:06
(1 day ago)
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 262287 (Latitude.sh LTDA)
Protocol: HTTP/ ...
show more
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 262287 (Latitude.sh LTDA)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-09-10T19:41:05Z
User-Agent: Go-http-client/2.0
show less
Bad Web Bot
Anonymous
2026-09-10 18:53:57
(1 day ago)
Botnet activity
Web App Attack
🇩🇪
FeG Deutschland
2026-09-09 21:34:54
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
🇵🇱
Budyn
2026-09-09 08:20:00
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: sweetpuddingtrap.xyz | URI: /wp-login.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/129.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇫🇮
oh.mg
2026-09-08 22:41:13
(3 days ago)
[Wed Sep 09 00:41:03.540973 2026] [security2:error] [pid 1654052:tid 1654070] [client 23.94.155.6:20 ...
show more
[Wed Sep 09 00:41:03.540973 2026] [security2:error] [pid 1654052:tid 1654070] [client 23.94.155.6:20837] [client 23.94.155.6] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 8)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "95.216.72.247"] [uri "/sftp-config.json"] [unique_id "aqCO_37y9qNhPbTGz5Da5AAAABA"]
[Wed Sep 09 00:41:13.479840 2026] [security2:error] [pid 1654052:tid 1654075] [client 23.94.155.6:20837] [client 23.94.155.6] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 13)"] [ver "OWASP_CRS/4.10.0-dev"] [
...
show less
Web App Attack
Bad Web Bot
🇺🇸
Omega Threat-ID
2026-09-08 19:16:07
(3 days ago)
Omega Point Threat ID honeypot sensor observed: honeypot, abuse-reported, otx-flagged
Port Scan
🇩🇪
neckaralb-admin.de
2026-09-08 13:26:36
(4 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
integrantservices.com
2026-09-07 12:00:51
(5 days ago)
(wordpress) Failed wordpress login from 23.94.155.6 (US/United States/23-94-155-6-host.colocrossing. ...
show more
(wordpress) Failed wordpress login from 23.94.155.6 (US/United States/23-94-155-6-host.colocrossing.com)
show less
Brute-Force