๐บ๐ธ
TPI-Abuse
2026-05-12 13:49:23
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 09:49:16.064304 2026] [security2:error] [pid 28566:tid 28566] [client 2a01:4f9:2b:10e7::2:54634] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.arthuryeung.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.arthuryeung.net"] [uri "/wp-json/wp/v2/users"] [unique_id "agMv3NKdzslmdm5maqETdgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 10:03:44
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 06:03:38.408940 2026] [security2:error] [pid 27388:tid 27410] [client 2a01:4f9:2b:10e7::2:43574] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||northtexaslive.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "northtexaslive.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agL6-ppRT8yo7OEYs8nsvQAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 06:30:50
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 02:30:42.936762 2026] [security2:error] [pid 17807:tid 17807] [client 2a01:4f9:2b:10e7::2:49176] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||daos.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "daos.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agLJEoAxsQWp4oKOBlZbaQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-05-11 22:45:25
(4 months ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
๐บ๐ธ
antlac1
2026-05-11 11:54:19
(4 months ago)
crowdsecurity/http-wordpress_user-enum
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 04:55:15
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 00:55:12.297392 2026] [security2:error] [pid 16633:tid 16633] [client 2a01:4f9:2b:10e7::2:60348] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||soundtrax.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "soundtrax.net"] [uri "/wp-json/wp/v2/users"] [unique_id "agFhMEGwkg8fMQ7o3FOidgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 02:22:29
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 22:22:25.761665 2026] [security2:error] [pid 10763:tid 10763] [client 2a01:4f9:2b:10e7::2:60054] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.kairoslogammakmur.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.kairoslogammakmur.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agE9YbePgMY2voZ0AQ9LgAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 02:09:18
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 22:09:11.733498 2026] [security2:error] [pid 18487:tid 18487] [client 2a01:4f9:2b:10e7::2:38658] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.prcomputersolutions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.prcomputersolutions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af_oxwQAQDHFm-FAX8jVQgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 00:11:16
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 20:11:10.172484 2026] [security2:error] [pid 19498:tid 19498] [client 2a01:4f9:2b:10e7::2:48910] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||equipoperu.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "equipoperu.org"] [uri "/wp-json/wp/v2/users"] [unique_id "af_NHlyqFP68yCR2_a4l0wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 21:06:37
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 17:06:32.569466 2026] [security2:error] [pid 22904:tid 22904] [client 2a01:4f9:2b:10e7::2:55880] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||local639.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "local639.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af-h2CuGtaf5M9ogkUZMYgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 12:02:38
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 08:02:34.008766 2026] [security2:error] [pid 9715:tid 9715] [client 2a01:4f9:2b:10e7::2:46514] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||odysseydogasporlari.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "odysseydogasporlari.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af8iWuunboFdkdkaXauxWwAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 08:35:45
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 04:35:41.314476 2026] [security2:error] [pid 13182:tid 13182] [client 2a01:4f9:2b:10e7::2:42484] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||marianozaro.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "marianozaro.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af7x3d9sWe3OfLASRhffyAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 22:21:08
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 18:21:01.912085 2026] [security2:error] [pid 7292:tid 7292] [client 2a01:4f9:2b:10e7::2:44500] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||indyham.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "indyham.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af5hzViwIZMan1u1DxF5fAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 18:19:33
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 14:19:28.127339 2026] [security2:error] [pid 17615:tid 17615] [client 2a01:4f9:2b:10e7::2:38000] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.n4fh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.n4fh.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af4pMP5phpC54pbDqpzwJgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 13:34:06
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 09:33:59.779533 2026] [security2:error] [pid 20564:tid 20564] [client 2a01:4f9:2b:10e7::2:42982] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||univey.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "univey.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af3mR6TwUT_2-Gt7dh8nQQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack