🇫🇷
dynamix
2025-10-17 20:43:01
(10 months ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
🇺🇸
myagent.site
2025-09-26 22:58:35
(11 months ago)
Blocking for trying to access an exploit file: /auth/sso/xmlrpc.php
Hacking
🇳🇱
Alboweb B.V.
2025-08-26 12:43:22
(1 year ago)
Bad web bot activity detected by Fail2Ban in plesk-apache-badbot jail
Bad Web Bot
🇺🇸
TPI-Abuse
2025-07-31 11:41:53
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 31 07:41:47.499088 2025] [security2:error] [pid 10739:tid 10739] [client 2a01:4f9:2b:10e7::2:39330] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lesdaniels.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lesdaniels.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aItWeyCGTTErkTgGGt4EWAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
stinpriza
2025-07-29 02:04:31
(1 year ago)
WP Authentication attempt for unknown user
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2025-07-29 02:04:29
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 28 22:04:24.843107 2025] [security2:error] [pid 27525:tid 27525] [client 2a01:4f9:2b:10e7::2:45452] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigheartskitchen.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigheartskitchen.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aIgsKPKfeMh6IW6xt4D9yQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-07-28 23:22:51
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 28 19:22:45.871852 2025] [security2:error] [pid 31940:tid 31940] [client 2a01:4f9:2b:10e7::2:48120] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rodandreelpiercam.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rodandreelpiercam.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aIgGRdx9tU1z--UKdzjsLgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-07-28 13:08:26
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 28 09:08:21.234255 2025] [security2:error] [pid 18521:tid 18521] [client 2a01:4f9:2b:10e7::2:46094] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||holgerfeld.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "holgerfeld.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aId2RURRWAQSvX7hXA74oQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-07-28 12:08:24
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 28 08:08:16.649185 2025] [security2:error] [pid 19902:tid 19902] [client 2a01:4f9:2b:10e7::2:45116] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stinsonbeachsurfandkayak.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stinsonbeachsurfandkayak.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aIdoMMgqvTlKNeELQa23rgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
weblite
2025-07-28 10:20:43
(1 year ago)
WP_AUTHOR_SCANNING
Web App Attack
🇺🇸
TPI-Abuse
2025-07-05 09:55:12
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 05 05:55:06.142362 2025] [security2:error] [pid 12110:tid 12110] [client 2a01:4f9:2b:10e7::2:55508] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.michaelcarrollgreen.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.michaelcarrollgreen.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aGj2emPQ-oAx_Qp0VVgy2AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-06-14 12:00:40
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 14 08:00:35.924937 2025] [security2:error] [pid 4159071:tid 4159075] [client 2a01:4f9:2b:10e7::2:39190] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jeanpaullederer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jeanpaullederer.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aE1kYwAbeeRSaa5K__BKPQAAAUE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-06-14 07:38:58
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f9:2b:10e7::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 14 03:38:53.579775 2025] [security2:error] [pid 964927:tid 964927] [client 2a01:4f9:2b:10e7::2:55304] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.muziktellers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.muziktellers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aE0nDdCMB8MtWMADafF8cAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
spyra.rocks
2025-04-27 04:06:10
(1 year ago)
WordPress Firewall
Web App Attack
🇩🇪
spyra.rocks
2025-04-22 02:06:17
(1 year ago)
WordPress Firewall
Web App Attack