๐ฑ๐ป
garmtech.com
2026-08-07 21:28:24
(3 weeks ago)
IM360 WAF: WordPress wp2shell REST batch endpoint before 7.0.2 or 6.9.5 (CVE-2026-63030) MV:0
Hacking
๐ท๐บ
sms.ru
2026-06-07 14:14:01
(2 months ago)
/wp-admin/setup-config.php
Web App Attack
๐ฌ๐ง
consul.to
2026-06-07 06:36:52
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Octopuce
2026-06-07 03:51:06
(2 months ago)
Aggressive web search of vulnerable pages: /shop.php /wp-content/plugins/pwnd-1/dedi1.php /wp-admin/ ...
show more
Aggressive web search of vulnerable pages: /shop.php /wp-content/plugins/pwnd-1/dedi1.php /wp-admin/js/widgets/setting.php /wp-includes/images/ ...
show less
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-05 05:07:15
(2 months ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
consul.to
2026-06-05 03:08:24
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
mnsf
2026-05-07 00:05:26
(3 months ago)
Too many Status 40X (22)
Brute-Force
Web App Attack
๐บ๐ธ
nyt
2026-05-06 00:41:07
(3 months ago)
Web Shell Upload
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-05-05 23:05:16
(3 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
threatintelligence_bvc
2026-04-29 23:56:07
(4 months ago)
Brute-Force
๐บ๐ฆ
URAN Publishing Service
2026-04-29 22:48:31
(4 months ago)
45.154.138.21 - - [30/Apr/2026:01:46:14 +0300] "GET /wp-content/plugins/wpforms/class-wpforms-update ...
show more
45.154.138.21 - - [30/Apr/2026:01:46:14 +0300] "GET /wp-content/plugins/wpforms/class-wpforms-update.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
45.154.138.21 - - [30/Apr/2026:01:48:31 +0300] "GET /wp-admin/maint/about.php HTTP/1.1" 404 708 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-04-29 15:06:00
(4 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 01:04:38
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.21 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 21:04:31.060958 2026] [security2:error] [pid 3687:tid 3687] [client 45.154.138.21:20665] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||selfdirecteddiscovery.org|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "selfdirecteddiscovery.org"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQqH_ZLsFBW1hE1Alb9IQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:44:47
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.21 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:44:39.495240 2026] [security2:error] [pid 14690:tid 14690] [client 45.154.138.21:23407] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mnalabama.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mnalabama.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQld7I2wVI03sGo567czwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 00:17:52
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.154.138.21 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.154.138.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 20:17:45.224038 2026] [security2:error] [pid 313998:tid 313998] [client 45.154.138.21:55087] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||network22.net|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "network22.net"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aeQfKZwRRjl5B0g014ilZgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack