๐บ๐ธ
TPI-Abuse
2026-09-20 12:25:58
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:25:51.366731 2026] [security2:error] [pid 13121:tid 13121] [client 2600:3c13::f03c:95ff:fe23:4eef:47626] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thefrontporchoffering.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thefrontporchoffering.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq_Qz0Mt2NKN5uwVlHlSewAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Yepngo
2026-09-20 12:23:01
(2 weeks ago)
2600:3c13::f03c:95ff:fe23:4eef - - [20/Sep/2026:14:23:00 +0200] "POST /wp-login.php HTTP/2.0" 200 12 ...
show more
2600:3c13::f03c:95ff:fe23:4eef - - [20/Sep/2026:14:23:00 +0200] "POST /wp-login.php HTTP/2.0" 200 12489 "https://dev.yepngo.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 12:05:33
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:05:28.090534 2026] [security2:error] [pid 12524:tid 12524] [client 2600:3c13::f03c:95ff:fe23:4eef:52382] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||salernospizza.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "salernospizza.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq_MCJGaduRjEnbhfx8ovgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-09-20 11:57:35
(2 weeks ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:46:05
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:46:02.067681 2026] [security2:error] [pid 2760459:tid 2760459] [client 2600:3c13::f03c:95ff:fe23:4eef:43586] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nearfieldchrist.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nearfieldchrist.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq_HelGxVrIwli9EvofMVQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 10:52:14
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:52:08.913919 2026] [security2:error] [pid 29926:tid 29926] [client 2600:3c13::f03c:95ff:fe23:4eef:43632] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||agri-stor.totalstorage.solutions|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "agri-stor.totalstorage.solutions"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq-62J2PI7HtICxpmriP_gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 10:35:10
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:35:02.405717 2026] [security2:error] [pid 20252:tid 20252] [client 2600:3c13::f03c:95ff:fe23:4eef:50894] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||campnecon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "campnecon.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq-21sjaDkCll23hFCHoUAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-20 10:32:45
(2 weeks ago)
(PERMBLOCK) 2600:3c13::f03c:95ff:fe23:4eef (GB/United Kingdom/England/London/-/[redacted]) has had m ...
show more
(PERMBLOCK) 2600:3c13::f03c:95ff:fe23:4eef (GB/United Kingdom/England/London/-/[redacted]) has had more than 4 temp blocks
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 10:16:41
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:16:34.558474 2026] [security2:error] [pid 13113:tid 13113] [client 2600:3c13::f03c:95ff:fe23:4eef:44042] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fractalsky.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fractalsky.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq-ygl2C6d8Da05n7X-m6wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 09:10:03
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
integrantservices.com
2026-09-20 08:45:19
(2 weeks ago)
(PERMBLOCK) 2600:3c13::f03c:95ff:fe23:4eef (GB/United Kingdom/-) has had more than 4 temp blocks
Hacking
๐บ๐ธ
lcpacs
2026-09-20 08:09:30
(2 weeks ago)
Auto-flagged by honeypot: tripped /xmlrpc.php โ not US+en-US (country: GB, accept-language: en-US,en ...
show more
Auto-flagged by honeypot: tripped /xmlrpc.php โ not US+en-US (country: GB, accept-language: en-US,en;q=0.9)
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Yepngo
2026-09-20 07:54:02
(2 weeks ago)
2600:3c13::f03c:95ff:fe23:4eef - - [20/Sep/2026:09:54:01 +0200] "POST /xmlrpc.php HTTP/2.0" 200 408 ...
show more
2600:3c13::f03c:95ff:fe23:4eef - - [20/Sep/2026:09:54:01 +0200] "POST /xmlrpc.php HTTP/2.0" 200 408 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 06:31:30
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:3c13::f03c:95ff:fe23:4eef (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 02:31:25.867002 2026] [security2:error] [pid 26250:tid 26250] [client 2600:3c13::f03c:95ff:fe23:4eef:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||upskirtcrazy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "upskirtcrazy.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aq99vTQPjlEGdMo-wCOCrAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Yepngo
2026-09-20 05:55:20
(2 weeks ago)
2600:3c13::f03c:95ff:fe23:4eef - - [20/Sep/2026:07:44:39 +0200] "POST /wp-login.php HTTP/2.0" 200 12 ...
show more
2600:3c13::f03c:95ff:fe23:4eef - - [20/Sep/2026:07:44:39 +0200] "POST /wp-login.php HTTP/2.0" 200 12507 "https://blog.yepngo.com/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36"
2600:3c13::f03c:95ff:fe23:4eef - - [20/Sep/2026:07:55:19 +0200] "POST /wp-login.php HTTP/2.0" 200 12510 "https://dev.yepngo.com/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack