๐ช๐ธ
pipeline.es
2026-08-24 07:09:49
(37 minutes ago)
Web scanning / probing for vulnerable paths | URL: //media/wp-includes/wlwmanifest.xml | Evidence: a ...
show more
Web scanning / probing for vulnerable paths | URL: //media/wp-includes/wlwmanifest.xml | Evidence: altovolta.es 34.139.46.160 - - [24/Aug/2026:08:46:26 +0200] \"GET //media/wp-includes/wlwmanifest.xml HTTP/1.1\" 404 231 \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36\" GEOIP_COUNTRY_CODE=US | ASN: GOOGLE-CLOUD-PLATFORM | Country: US
show less
Port Scan
Web App Attack
๐จ๐ญ
backslash
2026-08-24 07:06:00
(41 minutes ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ง๐ช
cmbplf
2026-08-24 07:05:14
(42 minutes ago)
14.235 post requests in 1 hour (2w6d12h)
Brute-Force
Bad Web Bot
๐บ๐ธ
Major Hostility
2026-08-24 07:02:25
(45 minutes ago)
"GET /wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /xmlrpc.php?rsd HTTP/1.1" 403
"GET /?author=2 H ...
show more
"GET /wp-includes/wlwmanifest.xml HTTP/1.1" 404
"GET /xmlrpc.php?rsd HTTP/1.1" 403
"GET /?author=2 HTTP/1.1" 404
"GET /wp-json/wp/v2/users/ HTTP/1.1" 404
"GET /wp-json/oembed/1.0/embed?url=http://[DOMAIN] HTTP/1.1" 404
"POST /xmlrpc.php HTTP/1.1" 403
show less
Web App Attack
๐บ๐ธ
kosada.com
2026-08-24 06:58:25
(49 minutes ago)
Web vulnerability probing: /alpa/wordpress/wp-includes/wlwmanifest.xml
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-08-24 06:55:29
(52 minutes ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
US/United States/160.46.139.34.bc.googleusercontent.com
Web App Attack
๐ฌ๐ง
abivia
2026-08-24 06:55:06
(52 minutes ago)
Abivia WAF trigger: Rule not-wp: WP probing on non-WP site uri: /index.php/wp-includes/wlwmanifest.x ...
show more
Abivia WAF trigger: Rule not-wp: WP probing on non-WP site uri: /index.php/wp-includes/wlwmanifest.xml
show less
Hacking
Web App Attack
๐ฉ๐ช
maxpower
2026-08-24 06:47:21
(1 hour ago)
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.139.46.160 (US/United States/160.46.139.34. ...
show more
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.139.46.160 (US/United States/160.46.139.34.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2026/08/24 08:31:08 [error] 2018413#2018413: *3053325 access forbidden by rule, client: 34.139.46.160, server: agrariaabruzzo.it, request: "POST //xmlrpc.php HTTP/1.1", host: "agrariaabruzzo.it"
2026/08/24 08:47:17 [error] 2018412#2018412: *3056870 access forbidden by rule, client: 34.139.46.160, server: alessandradamato.com, request: "GET //xmlrpc.php?rsd HTTP/1.1", host: "alessandradamato.com"
2026/08/24 08:47:20 [error] 2018412#2018412: *3056870 access forbidden by rule, client: 34.139.46.160, server: alessandradamato.com, request: "GET //?author=1 HTTP/1.1", host: "alessandradamato.com"
show less
Port Scan
๐ฉ๐ช
rh24
2026-08-24 06:45:30
(1 hour ago)
(wordpress) Failed wordpress login from 34.139.46.160 (US/United States/160.46.139.34.bc.googleuserc ...
show more
(wordpress) Failed wordpress login from 34.139.46.160 (US/United States/160.46.139.34.bc.googleusercontent.com)
show less
Brute-Force
๐บ๐ธ
WizardsToolkit
2026-08-24 06:43:00
(1 hour ago)
tried to access forbidden files; attempted to access /wp-includes/wlwmanifest.xml
Web App Attack
๐ฎ๐น
VHosting
2026-08-24 06:35:06
(1 hour ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐จ๐ฟ
SystemAdmin
2026-08-24 06:32:48
(1 hour ago)
Doing bad things...
Web App Attack
๐ฉ๐ช
maxpower
2026-08-24 06:31:09
(1 hour ago)
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.139.46.160 (US/United States/160.46.139.34. ...
show more
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.139.46.160 (US/United States/160.46.139.34.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2026/08/24 08:31:07 [error] 2018413#2018413: *3053325 access forbidden by rule, client: 34.139.46.160, server: agrariaabruzzo.it, request: "GET //xmlrpc.php?rsd HTTP/1.1", host: "agrariaabruzzo.it"
2026/08/24 08:31:07 [error] 2018413#2018413: *3053325 access forbidden by rule, client: 34.139.46.160, server: agrariaabruzzo.it, request: "GET //?author=1 HTTP/1.1", host: "agrariaabruzzo.it"
2026/08/24 08:31:07 [error] 2018413#2018413: *3053325 access forbidden by rule, client: 34.139.46.160, server: agrariaabruzzo.it, request: "GET //?author=2 HTTP/1.1", host: "agrariaabruzzo.it"
show less
Port Scan
Anonymous
2026-08-24 06:26:30
(1 hour ago)
(wordpress-user-enum) Failed wordpress-user-enum trigger from 34.139.46.160 (US/United States/160.46 ...
show more
(wordpress-user-enum) Failed wordpress-user-enum trigger from 34.139.46.160 (US/United States/160.46.139.34.bc.googleusercontent.com)
show less
Brute-Force
๐ฉ๐ช
AetherFox
2026-08-24 06:25:54
(1 hour ago)
AetherFox VoidGuard detected: [Mon Aug 24 06:25:53.654675 2026] [authz_core:error] [pid 3089727:tid ...
show more
AetherFox VoidGuard detected: [Mon Aug 24 06:25:53.654675 2026] [authz_core:error] [pid 3089727:tid 3089760] [client 34.139.46.160:54168] AH01630: client denied by server configuration: proxy:http://[MASKED]/
[Mon Aug 24 06:25:53.654868 2026] [authz_core:error] [pid 3089727:tid 3089760] [client 34.139.46.160:54168] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Mon Aug 24 06:25:53.757667 2026] [authz_core:error] [pid 3089727:tid 3089768] [client 34.139.46.160:54168] AH01630: client denied by server configuration: proxy:http://[MASKED]/
[Mon Aug 24 06:25:53.757802 2026] [authz_core:error] [pid 3089727:tid 3089768] [client 34.139.46.160:54168] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Mon Aug 24 06:25:53.859853 2026] [authz_core:error] [pid 3089727:tid 3089771] [client 34.139.46.160:54168] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
...
show less
Bad Web Bot
Web App Attack