๐ญ๐ท
bubausluge
2026-09-02 18:34:57
(17 hours ago)
Blocked by https://aegis.hr โ WAF: ModSec rule match - (MITRE T1190), 1 attempts, Period: 2026-09-02 ...
show more
Blocked by https://aegis.hr โ WAF: ModSec rule match - (MITRE T1190), 1 attempts, Period: 2026-09-02 16:46:05 to 2026-09-02 16:46:05
show less
Web App Attack
Hacking
๐ซ๐ท
Sklurk
2026-08-17 04:11:14
(2 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-31 02:41:52
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-30 01:19:42
(1 month ago)
Web App Attack
Web App Attack
๐จ๐ญ
backslash
2026-07-08 14:48:00
(1 month ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ง๐ช
Saec
2026-06-12 01:30:16
(2 months ago)
Jarvis auto-ban: CF honeypot path /xmlrpc.php (3ร on saec.me)
Port Scan
Web App Attack
Anonymous
2026-05-27 22:08:33
(3 months ago)
"GET http://<domain>.com:80/wp-includes/wlwmanifest.xml HTTP/1.1"
Hacking
Web App Attack
๐ง๐ช
cmbplf
2026-05-24 21:36:15
(3 months ago)
1.001 requests with url.path //xmlrpc.php
Brute-Force
Bad Web Bot
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(5 months ago)
"DDoS against public endpoint"
DDoS Attack
Anonymous
2025-12-29 03:30:00
(8 months ago)
WP Probing and/or Hacking
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:10:25
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:10:15.522126 2025] [security2:error] [pid 1931:tid 1931] [client 65.111.25.88:31559] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.technologymoods.com"] [uri "/.svn/wc.db"] [unique_id "aSUsJ0ZB-IpZdG0_pzd5ZAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:22:05
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:22:01.851518 2025] [security2:error] [pid 3343:tid 3343] [client 65.111.25.88:56127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.problematicelection.com"] [uri "/.env"] [unique_id "aSUg2SiCsGhxo8fFn2LhsgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:37:44
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:37:37.739060 2025] [security2:error] [pid 27300:tid 27300] [client 65.111.25.88:57387] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jeffjastro.com.jeffj.net"] [uri "/.env"] [unique_id "aST6UUZynfnmLvEzdjcC_QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:06:52
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.25.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:06:43.014937 2025] [security2:error] [pid 4922:tid 4922] [client 65.111.25.88:59115] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.drumez.com"] [uri "/.env"] [unique_id "aSTzE-cbfuvwsIqyuzHGVgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-10-21 05:52:32
(10 months ago)
WP Admin Scan Activities
Web App Attack