๐บ๐ธ
TPI-Abuse
2026-07-25 08:29:57
(41 minutes ago)
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 04:29:53.128401 2026] [security2:error] [pid 1366566:tid 1366566] [client 60.243.214.233:50653] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 60.243.214.233 (+1 hits since last alert)|shannonraevocalstudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "shannonraevocalstudio.com"] [uri "/xmlrpc.php"] [unique_id "amR0AZu7d75QbnaRC_dasAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-24 15:38:18
(17 hours ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 10:52:52
(22 hours ago)
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 06:52:46.374929 2026] [security2:error] [pid 800887:tid 800900] [client 60.243.214.233:61859] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 60.243.214.233 (+1 hits since last alert)|strengthsmatter.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "strengthsmatter.com"] [uri "/xmlrpc.php"] [unique_id "amND_kgJXkoVyI0Dffv29gAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
bigwavedave
2026-07-24 10:52:01
(22 hours ago)
Wordpress Attack
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-24 10:10:19
(23 hours ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ซ๐ฎ
YF
2026-07-24 08:00:38
(1 day ago)
xmlrpc.php Potential DDoS or brute force
DDoS Attack
Brute-Force
๐ฒ๐พ
Rizzy
2026-07-24 06:34:22
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฎ๐น
LTM
2026-07-24 06:20:02
(1 day ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 15:22:06
(1 day ago)
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 11:21:56.942820 2026] [security2:error] [pid 17955:tid 17955] [client 60.243.214.233:61600] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 60.243.214.233 (+1 hits since last alert)|avvmarchetticollini.it|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "avvmarchetticollini.it"] [uri "/xmlrpc.php"] [unique_id "amIxlHX8WB-UjtCsxYpqIwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
konseptit
2026-07-23 14:20:00
(1 day ago)
(wordpress) Failed wordpress login from 60.243.214.233 (IN/India/214.243.60.233.hathway.com)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-23 05:35:11
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 01:35:04.879264 2026] [security2:error] [pid 2552914:tid 2552934] [client 60.243.214.233:56731] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 60.243.214.233 (+1 hits since last alert)|rubenluis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rubenluis.com"] [uri "/xmlrpc.php"] [unique_id "amGoCI8y2VfpXHNlZQROpwAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-23 05:33:13
(2 days ago)
[redacted] 60.243.214.233 - - [23/Jul/2026:07:32:29 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" " ...
show more
[redacted] 60.243.214.233 - - [23/Jul/2026:07:32:29 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com (Jetpack 12.5; WordPress 6.3)"
[redacted] 60.243.214.233 - - [23/Jul/2026:07:32:40 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack/12.0; WordPress/6.4; http://site28779925.com"
[redacted] 60.243.214.233 - - [23/Jul/2026:07:32:50 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack/12.5; WordPress/6.1; http://site25068821.com"
[redacted] 60.243.214.233 - - [23/Jul/2026:07:33:01 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "WordPress.com; https://wordpress.com"
[redacted] 60.243.214.233 - - [23/Jul/2026:07:33:12 +0200] "POST /xmlrpc.php HTTP/1.1" 405 428 "-" "Jetpack by WordPress.com (Jetpack 12.0; WordPress 6.4)"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 04:53:26
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 60.243.214.233 (214.243.60.233.hathway.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 00:53:19.297317 2026] [security2:error] [pid 1756795:tid 1756795] [client 60.243.214.233:63755] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 60.243.214.233 (+1 hits since last alert)|mkdesignndetailing.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "mkdesignndetailing.com"] [uri "/xmlrpc.php"] [unique_id "amGeP48vBUdTwtuMaKc-mAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-07-22 14:31:27
(2 days ago)
xmlrpc.php attack DOS
Hacking
Exploited Host
Web App Attack
Anonymous
2026-07-22 08:20:38
(3 days ago)
(wordpress) Failed wordpress login from 60.243.214.233 (IN/India/214.243.60.233.hathway.com)
Brute-Force