๐ช๐ธ
Gem
2026-03-25 23:17:38
(6 months ago)
Unauthorized web scan.
Web App Attack
Anonymous
2026-03-15 19:05:02
(6 months ago)
suspicious request in access.log
Web App Attack
๐ฎ๐ช
RoboSOC
2026-03-13 03:18:21
(6 months ago)
WordPress File Manager Plugin Remote Code Execution Vulnerability, PTR: PTR record not found
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-13 02:15:01
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 12 22:14:46.745086 2026] [security2:error] [pid 1594:tid 1601] [client 64.145.79.33:62864] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ahsdistance.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ahsdistance.org"] [uri "/wp-json/wp/v2/users"] [unique_id "abNzFtzblsnfSJqiLKSlFAAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Sophie Nina
2026-03-13 02:00:09
(6 months ago)
Automatically blocked by server
Fraud Orders
๐บ๐ธ
TPI-Abuse
2026-03-13 01:58:22
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 12 21:58:09.832045 2026] [security2:error] [pid 3247:tid 3247] [client 64.145.79.33:63019] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||adona.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "adona.org"] [uri "/wp-json/wp/v2/users"] [unique_id "abNvMcZrV78mXCQNh7_P_gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
wordpresshosting.solutions
2026-03-13 01:57:19
(6 months ago)
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 64.145.79.33 - - [13/Mar/2026:0 ...
show more
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 64.145.79.33 - - [13/Mar/2026:01:57:02 +0000] "GET /wp-json/wp/v2/users HTTP/1.1" 401 4554 "-" "Python/3.10 aiohttp/3.13.3"
64.145.79.33 - - [13/Mar/2026:01:57:18 +0000] "GET /wp-json/wp/v2/users HTTP/1.1" 401 4554 "-" "Python/3.10 aiohttp/3.13.3"
show less
Brute-Force
Web App Attack
๐บ๐ธ
kosada.com
2026-03-13 01:53:55
(6 months ago)
Web vulnerability probing: /_ignition/execute-solution
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-13 01:37:07
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 12 21:36:55.742111 2026] [security2:error] [pid 26231:tid 26469] [client 64.145.79.33:57925] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aafim.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aafim.org"] [uri "/wp-json/wp/v2/users"] [unique_id "abNqN65PK4C22srXUqoT4wAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dtorrer
2026-03-13 01:19:15
(6 months ago)
General vulnerability scan.
Port Scan
๐บ๐ธ
TPI-Abuse
2026-03-13 01:08:42
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 64.145.79.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 12 21:08:16.305089 2026] [security2:error] [pid 20169:tid 20169] [client 64.145.79.33:50446] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.10mostwantedfugitives.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.10mostwantedfugitives.com"] [uri "/wp-json/wp/v2/users"] [unique_id "abNjgNWVddR3_6qvE1K9mAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-03-13 01:07:02
(6 months ago)
...
Web App Attack
Anonymous
2026-03-13 01:05:58
(6 months ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐บ๐ธ
SodaAudit.app
2026-03-13 01:04:44
(6 months ago)
[sodaaudit.app] Web app attack. Timestamp: 2026-03-12T23:23:17.000Z. 3 probe events, 3 distinct path ...
show more
[sodaaudit.app] Web app attack. Timestamp: 2026-03-12T23:23:17.000Z. 3 probe events, 3 distinct path(s). Paths (payload): /.env, /wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php, /xmlrpc.php
show less
Web App Attack
๐จ๐ฆ
john doe
2026-03-12 23:40:11
(6 months ago)
SentinelBot: Laravel Ignition RCE (score: 70)
Web App Attack