๐บ๐ธ
TPI-Abuse
2024-12-06 15:18:10
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:242:1b0c::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:242:1b0c::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 06 10:17:58.986020 2024] [security2:error] [pid 32613:tid 32613] [client 2a01:4f8:242:1b0c::2:43170] [client 2a01:4f8:242:1b0c::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.ftiptondds.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.ftiptondds.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z1MVpQUudbPOp7oGYMyNqAAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-06 02:47:08
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:242:1b0c::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:242:1b0c::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 05 21:47:04.221268 2024] [security2:error] [pid 11548:tid 11597] [client 2a01:4f8:242:1b0c::2:47050] [client 2a01:4f8:242:1b0c::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jaslae.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jaslae.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z1JlqMQxmHb1Y2zveSOxxwAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-05 19:57:06
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:242:1b0c::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:242:1b0c::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 05 14:57:02.748957 2024] [security2:error] [pid 13138:tid 13138] [client 2a01:4f8:242:1b0c::2:41238] [client 2a01:4f8:242:1b0c::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||modmove.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "modmove.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z1IFjgNT2O5TLLTR_hRJkAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
weblite
2024-02-21 13:57:40
(2 years ago)
WP_XMLRPC_ABUSE
Brute-Force
Web App Attack
๐ฌ๐ง
Swiptly
2024-02-10 02:01:07
(2 years ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
๐ช๐ธ
vanitybiss
2023-11-11 19:10:00
(2 years ago)
WordPress Brute Force Attack: wp-login.php
Brute-Force
Web App Attack
๐ฉ๐ช
Sysadmin Peter
2023-11-11 16:56:26
(2 years ago)
2a01:4f8:242:1b0c::2 - - [11/Nov/2023:17:56:26 +0100] "POST /wp-login.php HTTP/1.1" 200 9757 "-" "Mo ...
show more
2a01:4f8:242:1b0c::2 - - [11/Nov/2023:17:56:26 +0100] "POST /wp-login.php HTTP/1.1" 200 9757 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/62.0.3202.94 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
Max la Menace
2023-11-11 16:00:47
(2 years ago)
Wordpress Attack (P)
Web App Attack
๐ฉ๐ช
Hazzard
2023-11-10 23:58:01
(2 years ago)
(wordpress) Failed wordpress login from 2a01:4f8:242:1b0c::2 (DE/Germany/Baden-Wurttemberg/Ehingen/- ...
show more
(wordpress) Failed wordpress login from 2a01:4f8:242:1b0c::2 (DE/Germany/Baden-Wurttemberg/Ehingen/-/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ซ๐ท
Max la Menace
2023-11-10 21:20:45
(2 years ago)
Wordpress attack (F)
Blog Spam
Web App Attack
๐ฉ๐ช
london2038.com
2023-11-10 08:40:32
(2 years ago)
Attacking WordPress
2a01:4f8:242:1b0c::2 - - [10/Nov/2023:09:40:28 +0100] "POST /wp-login.php HTTP/1 ...
show more
Attacking WordPress
2a01:4f8:242:1b0c::2 - - [10/Nov/2023:09:40:28 +0100] "POST /wp-login.php HTTP/1.1" 503 19310 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/47.0.2526.106 Safari/537.36"
show less
Brute-Force
Web App Attack
๐ฉ๐ช
Hazzard
2023-11-09 22:37:06
(2 years ago)
(wordpress) Failed wordpress login from 2a01:4f8:242:1b0c::2 (DE/Germany/Baden-Wurttemberg/Ehingen/- ...
show more
(wordpress) Failed wordpress login from 2a01:4f8:242:1b0c::2 (DE/Germany/Baden-Wurttemberg/Ehingen/-/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ฆ๐บ
weblite
2023-11-09 19:19:15
(2 years ago)
WP_LOGIN_FAIL
Brute-Force
Web App Attack
๐ฉ๐ช
Sysadmin Peter
2023-11-09 15:33:43
(2 years ago)
2a01:4f8:242:1b0c::2 - - [09/Nov/2023:16:33:43 +0100] "POST /wordpress/wp-login.php HTTP/1.1" 200 82 ...
show more
2a01:4f8:242:1b0c::2 - - [09/Nov/2023:16:33:43 +0100] "POST /wordpress/wp-login.php HTTP/1.1" 200 8225 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
Max la Menace
2023-11-09 14:21:41
(2 years ago)
Wordpress attack (F)
Blog Spam
Web App Attack