Bot / scanning and/or hacking attempts: POST //xmlrpc.php HTTP/1.1, GET //?author=1 HTTP/1.1, GET // ...
show moreBot / scanning and/or hacking attempts: POST //xmlrpc.php HTTP/1.1, GET //?author=1 HTTP/1.1, GET //?author=2 HTTP/1.1, GET //wp-json/wp/v2/users/ HTTP/1.1, GET //wp-json/oembed/1.0/embed?url=https://hanskroonadvies.nl/
show less
(mod_security) mod_security (id:225170) triggered by 34.28.80.249 (249.80.28.34.bc.googleusercontent ...
show more(mod_security) mod_security (id:225170) triggered by 34.28.80.249 (249.80.28.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 25 12:56:30.001038 2025] [security2:error] [pid 19879:tid 20004] [client 34.28.80.249:57699] [client 34.28.80.249] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nepsco.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nepsco.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-LgPegxcq9wX43sDylvGQAAARM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
(wordpress) Failed wordpress login from 34.28.80.249 (US/United States/249.80.28.34.bc.googleusercon ...
show more(wordpress) Failed wordpress login from 34.28.80.249 (US/United States/249.80.28.34.bc.googleusercontent.com)
show less