πΊπΈ
WeekendWeb
2026-06-17 20:40:04
(2 days ago)
Wordpress Vunerability attack
Web App Attack
π©πͺ
ger-stg-sifi1
2026-06-17 20:39:18
(2 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-06-01 16:23:38
(2 weeks ago)
(wordpress) Failed wordpress login from 50.84.55.2 (US/United States/syn-050-084-055-002.biz.spectru ...
show more
(wordpress) Failed wordpress login from 50.84.55.2 (US/United States/syn-050-084-055-002.biz.spectrum.com)
show less
Brute-Force
π³π±
wlt-blocker
2026-05-28 16:57:48
(3 weeks ago)
Unauthorized access to webpage admin
Web App Attack
π³π±
wlt-blocker
2026-05-26 21:50:00
(3 weeks ago)
Unauthorized access to webpage admin
Web App Attack
Anonymous
2026-05-22 15:12:46
(4 weeks ago)
Attac
Brute-Force
π―π΅
beon
2026-05-19 18:15:44
(1 month ago)
[DateTime=>2026-05-19T18:15:44Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/xmlrpc.php] , [total_Hit ...
show more
[DateTime=>2026-05-19T18:15:44Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/xmlrpc.php] , [total_Hit=>once] , [Keyword=>WordPress]
show less
Bad Web Bot
Web App Attack
Anonymous
2026-05-18 20:22:03
(1 month ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
Anonymous
2026-05-18 15:30:41
(1 month ago)
Attac
Brute-Force
πΊπΈ
TPI-Abuse
2026-05-14 18:26:45
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 50.84.55.2 (syn-050-084-055-002.biz.spectrum.co ...
show more
(mod_security) mod_security (id:240335) triggered by 50.84.55.2 (syn-050-084-055-002.biz.spectrum.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 14:26:41.064785 2026] [security2:error] [pid 6283:tid 6283] [client 50.84.55.2:59473] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 50.84.55.2 (+1 hits since last alert)|thenursingsite.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "thenursingsite.com"] [uri "/xmlrpc.php"] [unique_id "agYT4SGc6wGCWoQCRBcZ7gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
WeekendWeb
2026-05-14 18:23:39
(1 month ago)
Wordpress Vunerability attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-12 16:04:50
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 50.84.55.2 (syn-050-084-055-002.biz.spectrum.co ...
show more
(mod_security) mod_security (id:240335) triggered by 50.84.55.2 (syn-050-084-055-002.biz.spectrum.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 12:04:46.409644 2026] [security2:error] [pid 16607:tid 16607] [client 50.84.55.2:61119] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 50.84.55.2 (+1 hits since last alert)|wwfstudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "wwfstudio.com"] [uri "/xmlrpc.php"] [unique_id "agNPnvugOBfZ9303EAmcDAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
integrantservices.com
2026-05-08 21:08:34
(1 month ago)
(wordpress) Failed wordpress login from 50.84.55.2 (US/United States/syn-050-084-055-002.biz.spectru ...
show more
(wordpress) Failed wordpress login from 50.84.55.2 (US/United States/syn-050-084-055-002.biz.spectrum.com)
show less
Brute-Force
πΊπΈ
TPI-Abuse
2026-05-07 16:35:57
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 50.84.55.2 (syn-050-084-055-002.biz.spectrum.co ...
show more
(mod_security) mod_security (id:240335) triggered by 50.84.55.2 (syn-050-084-055-002.biz.spectrum.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 12:35:53.092047 2026] [security2:error] [pid 27983:tid 27983] [client 50.84.55.2:51261] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 50.84.55.2 (+1 hits since last alert)|bonesband.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "bonesband.com"] [uri "/xmlrpc.php"] [unique_id "afy_aRsUGL8irdztsa_RRQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π±π»
garmtech.com
2026-05-06 20:26:39
(1 month ago)
IM360 WAF: Rate limit exceeded for XMLRPC DoS (fault code)
Web App Attack