๐ฉ๐ช
eminovic.ba
2024-11-17 19:18:43
(1 year ago)
Wordpress attack
...
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
blessingfeather
2024-11-17 15:56:00
(1 year ago)
repeated Wordpress lockouts; attempts to log in as admin;
Brute-Force
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2024-11-17 15:25:31
(1 year ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2024-11-16 14:13:00
(1 year ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ง๐ช
cmbplf
2024-11-16 10:24:09
(1 year ago)
514 requests to */xmlrpc.php
Brute-Force
Bad Web Bot
๐ฉ๐ช
eminovic.ba
2024-11-16 09:31:05
(1 year ago)
Wordpress attack
...
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
mawan
2024-11-09 18:08:00
(1 year ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-06 09:06:21
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 06 04:06:17.766934 2024] [security2:error] [pid 27431:tid 27431] [client 2400:8904::f03c:94ff:fe1c:387a:44706] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.45northoliveoil.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.45northoliveoil.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZysxiUMfPT5P7EbuDsyLlAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-06 05:14:18
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 06 00:14:10.767747 2024] [security2:error] [pid 5691:tid 5691] [client 2400:8904::f03c:94ff:fe1c:387a:37220] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||int.mavikalem.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "int.mavikalem.org"] [uri "/wp-json/wp/v2/users"] [unique_id "Zyr7InMLWx5-Nck7rooEnAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-06 04:39:22
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 23:39:18.128705 2024] [security2:error] [pid 986:tid 986] [client 2400:8904::f03c:94ff:fe1c:387a:36748] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fltsiminc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fltsiminc.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zyry9pGQtArd14w_GQdM8wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-06 04:19:52
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 23:19:45.766405 2024] [security2:error] [pid 2305972:tid 2305972] [client 2400:8904::f03c:94ff:fe1c:387a:42622] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bfpsamoa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bfpsamoa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZyruYRUT9tqevlxD_lWfpQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-05 22:55:25
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 17:55:19.100716 2024] [security2:error] [pid 31474:tid 31484] [client 2400:8904::f03c:94ff:fe1c:387a:52696] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fastesttrademark.aafm.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fastesttrademark.aafm.us"] [uri "/wp-json/wp/v2/users"] [unique_id "ZyqiV7-3ki4-k-zBBvOEagAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-05 21:14:36
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 16:14:32.354236 2024] [security2:error] [pid 14962:tid 14962] [client 2400:8904::f03c:94ff:fe1c:387a:60564] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cmcnow.cmcnow.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cmcnow.cmcnow.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ZyqKuCyaInMwpasvrvIUIgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-05 18:17:24
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 13:17:18.068401 2024] [security2:error] [pid 29250:tid 29250] [client 2400:8904::f03c:94ff:fe1c:387a:38882] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||soozebosire.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "soozebosire.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZyphLrA6ocnjhn5xF_-PGQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-05 13:36:43
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:8904::f03c:94ff:fe1c:387a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 08:36:36.271555 2024] [security2:error] [pid 15101:tid 15101] [client 2400:8904::f03c:94ff:fe1c:387a:60180] [client 2400:8904::f03c:94ff:fe1c:387a] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sparler.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sparler.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZyofZGPiNOh-3tqm_lMDngAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack