🇩🇪
sverson
2026-08-29 11:07:51
(8 hours ago)
Wordpress Attack Attempt
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 09:30:18
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 05:30:14.292195 2026] [security2:error] [pid 19419:tid 19419] [client 34.14.60.202:5467] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doctoredwinalvarez.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doctoredwinalvarez.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apKmprniBykokitC7sdWmAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 08:38:54
(11 hours ago)
Web application attack detected.
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 08:27:05
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 04:27:01.931382 2026] [security2:error] [pid 31984:tid 31984] [client 34.14.60.202:5814] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||xyncom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "xyncom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apKX1Q1cXstg_pJ1LstcGAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 07:40:13
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 03:40:07.375170 2026] [security2:error] [pid 2119:tid 2119] [client 34.14.60.202:10604] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kdgsf.xyz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kdgsf.xyz"] [uri "/wp-json/wp/v2/users"] [unique_id "apKM1yBIRvcK6msvJaEb7AAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 07:00:08
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:59:58.300641 2026] [security2:error] [pid 3507:tid 3507] [client 34.14.60.202:19649] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theopinionatedowl.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theopinionatedowl.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apKDblPuXVMnGYb42au-BwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 06:29:32
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:29:26.121351 2026] [security2:error] [pid 30507:tid 30507] [client 34.14.60.202:56787] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||iconconstructors.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "iconconstructors.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apJ8RiB2UZBjYHOaulX2FwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-08-29 05:58:44
(14 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 34.14.60.202 (BE/Belgium/202.60.14.34.bc.goog ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 34.14.60.202 (BE/Belgium/202.60.14.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
🇺🇸
TPI-Abuse
2026-08-29 05:53:43
(14 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:53:35.953502 2026] [security2:error] [pid 3812:tid 3812] [client 34.14.60.202:32631] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rodzillacharters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rodzillacharters.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apJz30n_W6h9qJjEb1r5aAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 05:08:11
(14 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:08:07.935472 2026] [security2:error] [pid 5876:tid 5876] [client 34.14.60.202:48508] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||achildsspace.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "achildsspace.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apJpN2qsmggiw2isUUoLRAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-08-29 05:02:02
(15 hours ago)
Try to access /xmlrpc.php
Web App Attack
🇲🇽
octageeks.com
2026-08-29 04:42:19
(15 hours ago)
Wordpress malicious attack:[octaflood]
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 04:15:26
(15 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.14.60.202 (202.60.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:15:22.730721 2026] [security2:error] [pid 7381:tid 7401] [client 34.14.60.202:55096] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||montanatribes.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "montanatribes.org"] [uri "/wp-json/wp/v2/users"] [unique_id "apJc2k1B9tjNBLLj44HdzwAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 04:00:22
(16 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
🇬🇧
consul.to
2026-08-29 03:10:00
(16 hours ago)
Web attack/malicious scanning detected
Web App Attack