π«π·
SpaceHost-Server
2026-06-14 22:31:00
(5 days ago)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-13 22:38:05
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 18:38:01.490662 2026] [security2:error] [pid 19018:tid 19018] [client 43.198.160.150:54330] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.yogawithbubba.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.yogawithbubba.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai3byRvFf46EthFogiQL_gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
SpaceHost-Server
2026-06-13 22:29:33
(6 days ago)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 21:25:13
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 17:25:07.841843 2026] [security2:error] [pid 29289:tid 29289] [client 43.198.160.150:35636] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rwabutazafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rwabutazafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aix5M537dzKIgyBhoMQjBwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 15:13:26
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 11:13:21.131413 2026] [security2:error] [pid 8748:tid 8748] [client 43.198.160.150:45586] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rambleandprose.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rambleandprose.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiwiEQNru4c6QE_sgKVELgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-06-12 04:08:04
(1 week ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
π«π·
SpaceHost-Server
2026-06-11 22:32:35
(1 week ago)
Brute-Force
Web App Attack
Anonymous
2026-06-11 16:25:21
(1 week ago)
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-11 16:09:00
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 12:08:54.553852 2026] [security2:error] [pid 27859:tid 27881] [client 43.198.160.150:51964] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tkfay.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tkfay.com"] [uri "/wp-json/wp/v2/users"] [unique_id "airdlpdvlCtvv8FfWlYuzQAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-11 05:35:46
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 01:35:39.743998 2026] [security2:error] [pid 23942:tid 23942] [client 43.198.160.150:60684] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.scswat.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.scswat.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aipJKxF-pB52Be9HiyrvdgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
SpaceHost-Server
2026-06-10 22:31:45
(1 week ago)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-07 15:30:38
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 11:30:34.923136 2026] [security2:error] [pid 24127:tid 24127] [client 43.198.160.150:54616] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nextstepplus.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nextstepplus.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aiWOmkiraNmgFJIhbKv5UwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-06 10:56:52
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 06:56:46.307106 2026] [security2:error] [pid 3429:tid 3429] [client 43.198.160.150:50124] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.hsoftwaresystems.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.hsoftwaresystems.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aiP87uhrXHGlRF1LgrfXxgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 19:16:14
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 15:16:09.620393 2026] [security2:error] [pid 15660:tid 15660] [client 43.198.160.150:36996] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.soonerstone.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.soonerstone.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah8r-T2vnGQgmCBRavEHdQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 15:13:32
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.co ...
show more
(mod_security) mod_security (id:225170) triggered by 43.198.160.150 (ec2-43-198-160-150.ap-east-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:13:27.097512 2026] [security2:error] [pid 22871:tid 22871] [client 43.198.160.150:44098] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bzbdesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bzbdesigns.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah7zFxmRX3EWWPHnhCQqLQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack