๐ซ๐ท
tecnicorioja
2026-06-14 22:00:54
(3 days ago)
wp-login attack [14/Jun/2026:03:52:44
Brute-Force
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-14 04:18:59
(3 days ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-14 01:35:56
(3 days ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-14 00:15:09
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 20:15:05.695672 2026] [security2:error] [pid 18129:tid 18129] [client 34.140.68.120:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||forsaleincr.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "forsaleincr.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ai3yib98-8NSmHs_HsGcHQAAADQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
integrantservices.com
2026-06-13 22:55:41
(3 days ago)
(wordpress) Failed wordpress login from 34.140.68.120 (BE/Belgium/120.68.140.34.bc.googleusercontent ...
show more
(wordpress) Failed wordpress login from 34.140.68.120 (BE/Belgium/120.68.140.34.bc.googleusercontent.com)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-13 22:07:48
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 18:07:40.385183 2026] [security2:error] [pid 32401:tid 32401] [client 34.140.68.120:46505] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||odysseydogasporlari.com.handankoc.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "odysseydogasporlari.com.handankoc.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ai3UrBGVx5wyxDsYJbEZ_QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 20:46:44
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 16:46:40.790626 2026] [security2:error] [pid 16466:tid 16485] [client 34.140.68.120:34090] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||danelandia.aafm.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "danelandia.aafm.us"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ai3BsFW0MF4W3odLxG56cAAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 20:20:19
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.140.68.120 (120.68.140.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 16:20:15.081928 2026] [security2:error] [pid 31864:tid 31864] [client 34.140.68.120:11360] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||churchbehindthewalls.bridgital.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "churchbehindthewalls.bridgital.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ai27f8NBF7A4mN-SWNp_HQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐น
Malta
2026-06-13 19:51:13
(4 days ago)
34.140.68.120 - - [13/Jun/2026:21:51:12 +0200] "POST /xmlrpc.php HTTP/1.1" "Mozilla/5.0 (Macintosh; ...
show more
34.140.68.120 - - [13/Jun/2026:21:51:12 +0200] "POST /xmlrpc.php HTTP/1.1" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐จ๐ฟ
ptlab
2026-06-13 18:45:50
(4 days ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-13 18:45:03
(4 days ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐ฌ๐ง
spamverify.com
2026-06-13 16:12:15
(4 days ago)
Honeypot Hit: xmlrpc.php
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-06-13 12:18:04
(4 days ago)
Wordfence waf block on fypeducation
Web App Attack