๐ซ๐ท
dynamix
2026-07-30 15:30:16
(1 day ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-30 14:48:03
(1 day ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฉ๐ช
rh24
2026-07-30 13:45:06
(1 day ago)
(xmlrpc_405) XMLRPC-Bot 405 41.83.88.39 (SN/Senegal/-)
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-29 17:38:36
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 13:38:29.920708 2026] [security2:error] [pid 21943:tid 21943] [client 41.83.88.39:63350] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.83.88.39 (+1 hits since last alert)|rootsofwellnessayurveda.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rootsofwellnessayurveda.com"] [uri "/xmlrpc.php"] [unique_id "amo6laZbU12RBEJWp2SJiQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-29 13:35:19
(2 days ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐ฉ๐ช
burlacu.org
2026-07-29 11:24:02
(2 days ago)
Nginx multi-log analysis detected: wordpress_scan. Evidence: XMLRPC abuse with 20 requests. Blocked ...
show more
Nginx multi-log analysis detected: wordpress_scan. Evidence: XMLRPC abuse with 20 requests. Blocked automatically.
show less
Web App Attack
Bad Web Bot
Anonymous
2026-07-29 07:00:00
(2 days ago)
Automated Apache web application probing in selected 24h window; attempts=116, unique_paths=1, error ...
show more
Automated Apache web application probing in selected 24h window; attempts=116, unique_paths=1, error_responses=116; targets include WordPress, .env/.git, phpMyAdmin, autodiscover, wpad.dat and related probe paths.
show less
Web App Attack
Anonymous
2026-07-29 07:00:00
(2 days ago)
Apache probe; attempts=224; exact paths: /xmlrpc.php
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-28 17:00:15
(3 days ago)
(wordpress) Failed wordpress login from 41.83.88.39 (SN/Senegal/Dakar/Dakar/-)
Brute-Force
๐ช๐ธ
masterguru
2026-07-28 12:46:37
(3 days ago)
(xmlrpc) Failed xmlrpc access from 41.83.88.39 (SN/Senegal/-): 5 in the last 3600 secs (0-122)
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-28 09:25:27
(3 days ago)
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 05:25:24.479451 2026] [security2:error] [pid 975548:tid 975548] [client 41.83.88.39:55731] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.83.88.39 (+1 hits since last alert)|dogarttoday.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "dogarttoday.com"] [uri "/xmlrpc.php"] [unique_id "amh1hDsywdvNeELjfYADkgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-07-28 09:09:27
(3 days ago)
xmlrpc.php attack DOS
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 16:59:39
(4 days ago)
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 12:59:31.322916 2026] [security2:error] [pid 2910291:tid 2910382] [client 41.83.88.39:60231] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.83.88.39 (+1 hits since last alert)|conservativedemocrat.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "conservativedemocrat.com"] [uri "/xmlrpc.php"] [unique_id "ameOc4ti9Qp6nnqW1rJDQwAAAZg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WeekendWeb
2026-07-27 15:56:02
(4 days ago)
Wordpress Vunerability attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 13:47:59
(4 days ago)
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240335) triggered by 41.83.88.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 09:47:54.035707 2026] [security2:error] [pid 506668:tid 506668] [client 41.83.88.39:55476] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.83.88.39 (+1 hits since last alert)|mariettacaseyclub.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mariettacaseyclub.org"] [uri "/xmlrpc.php"] [unique_id "amdhihCnAYuAuRkBHtNG_wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack