Anonymous
2026-09-29 23:15:14
(1 day ago)
Web attack blocked by Wordfence on kunstkringhenrijonas.nl (1 hit). Reported by CRMON.
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-29 15:19:09
(2 days ago)
(wordpress) Failed wordpress login from 2605:a140:2316:6273::1 (US/United States/Missouri/St Louis/s ...
show more
(wordpress) Failed wordpress login from 2605:a140:2316:6273::1 (US/United States/Missouri/St Louis/server.supremedigitalhosting.com/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ซ๐ท
SpaceHost-Server
2026-09-20 22:20:46
(1 week ago)
Brute-Force
Web App Attack
Anonymous
2026-09-20 19:52:11
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 12:58:34
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalho ...
show more
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:58:31.572714 2026] [security2:error] [pid 30729:tid 30729] [client 2605:a140:2316:6273::1:34022] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||johncyphers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "johncyphers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq_Yd7EPMGkJzKpFubwZQwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-19 22:19:58
(1 week ago)
Brute-Force
Web App Attack
๐ฉ๐ช
stinpriza
2026-09-19 17:22:49
(1 week ago)
WP Authentication attempt for unknown user
Brute-Force
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-09-19 17:08:59
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 16:04:00
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalho ...
show more
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 12:03:54.923543 2026] [security2:error] [pid 517:tid 517] [client 2605:a140:2316:6273::1:43598] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||adlc18.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "adlc18.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aq6yauMCCQnJt-DX5ocazAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 11:46:42
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalho ...
show more
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 07:46:35.507290 2026] [security2:error] [pid 19558:tid 19558] [client 2605:a140:2316:6273::1:38594] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||socialalchemy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "socialalchemy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq52G5CE05bUo1eqhPX2hgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 01:36:48
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalho ...
show more
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 21:36:43.768729 2026] [security2:error] [pid 7445:tid 7445] [client 2605:a140:2316:6273::1:53122] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||twogocamping.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "twogocamping.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqyVq8zcfV2SukGPLzFrQgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 16:44:31
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalho ...
show more
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 12:44:24.075800 2026] [security2:error] [pid 15294:tid 15294] [client 2605:a140:2316:6273::1:57906] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.barbaraehill.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.barbaraehill.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqwY6Hbp2u1KyTxyurfYdAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Omar Martรญnez
2026-09-17 16:44:27
(2 weeks ago)
2605:a140:2316:6273::1 - - [17/Sep/2026:10:44:26 -0600] "GET /wp-json/wp/v2/users HTTP/1.1" 200 6598 ...
show more
2605:a140:2316:6273::1 - - [17/Sep/2026:10:44:26 -0600] "GET /wp-json/wp/v2/users HTTP/1.1" 200 6598 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:95.0) Gecko/20100101 Firefox/95.0"
...
show less
Phishing
Email Spam
Blog Spam
๐ฉ๐ช
filstal.org
2026-09-17 12:40:35
(2 weeks ago)
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. U ...
show more
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:50.0) Gecko/20100101 Firefox/50.0
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 12:37:11
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalho ...
show more
(mod_security) mod_security (id:225170) triggered by 2605:a140:2316:6273::1 (server.supremedigitalhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 08:37:07.951133 2026] [security2:error] [pid 4035:tid 4035] [client 2605:a140:2316:6273::1:48998] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bergenoaks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bergenoaks.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqve81vtWxWvioKHkmloIgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack