๐บ๐ธ
TPI-Abuse
2026-06-20 00:04:04
(48 minutes ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 20:03:57.693757 2026] [security2:error] [pid 32613:tid 32622] [client 66.11.126.50:30046] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||inal.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "inal.org"] [uri "/wp-json/wp/v2/users/7"] [unique_id "ajXY7TYwoCth8lst3kdXJwAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-19 21:36:09
(3 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 15:54:39
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 11:54:34.151367 2026] [security2:error] [pid 15244:tid 15244] [client 66.11.126.50:41490] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||circleofsound.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "circleofsound.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ajVmOmNRmXjd916sZTnnoAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-19 13:09:28
(11 hours ago)
2026-06-19T15:09:27.240283+02:00 aion wordpress[713979]: Blocked user enumeration attempt from 66.11 ...
show more
2026-06-19T15:09:27.240283+02:00 aion wordpress[713979]: Blocked user enumeration attempt from 66.11.126.50
...
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-19 11:03:31
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 07:03:26.251672 2026] [security2:error] [pid 17976:tid 18095] [client 66.11.126.50:9752] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||heworeblack.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "heworeblack.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajUh_ocKFkpiNkLWwR9sPAAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 10:01:06
(14 hours ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 06:00:59.343359 2026] [security2:error] [pid 20135:tid 20135] [client 66.11.126.50:55922] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nomorenicenice.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nomorenicenice.net"] [uri "/wp-json/wp/v2/users/2"] [unique_id "ajUTW5SZZPqD_HzepKkv6gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 09:43:31
(15 hours ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 05:43:28.006724 2026] [security2:error] [pid 2875:tid 2875] [client 66.11.126.50:45948] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||magazine.angelabcomics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "magazine.angelabcomics.com"] [uri "/wp-json/wp/v2/users/10"] [unique_id "ajUPQOKMu0B1KCtIn_4-rgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 08:55:38
(15 hours ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 04:55:35.098304 2026] [security2:error] [pid 4042:tid 4042] [client 66.11.126.50:10172] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||constructionloansfunding.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "constructionloansfunding.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajUEB2p5oTi4Xeka17RMvgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 07:33:00
(17 hours ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 03:32:54.723757 2026] [security2:error] [pid 30292:tid 30365] [client 66.11.126.50:1310] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||utahhoaservices.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "utahhoaservices.com"] [uri "/wp-json/wp/v2/users/10"] [unique_id "ajTwpqTr7U7Rp5T-oslhnQAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-06-19 03:23:00
(21 hours ago)
(wordpress) Failed wordpress login from 66.11.126.50 (US/United States/Oregon/Bend/tesla.murabba.com ...
show more
(wordpress) Failed wordpress login from 66.11.126.50 (US/United States/Oregon/Bend/tesla.murabba.com/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ฒ๐ฝ
octageeks.com
2026-06-18 04:21:38
(1 day ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
bpolson
2026-06-16 14:11:02
(3 days ago)
WordPress Hacking/Scanning. (s1)
Hacking
Web App Attack
๐ฒ๐น
Malta
2026-06-16 12:15:43
(3 days ago)
66.11.126.50 - - [16/Jun/2026:14:15:43 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Linux ...
show more
66.11.126.50 - - [16/Jun/2026:14:15:43 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-16 11:58:48
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 66.11.126.50 (tesla.murabba.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 07:58:42.861000 2026] [security2:error] [pid 27316:tid 27316] [client 66.11.126.50:54144] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dev.jeanniemorrislaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dev.jeanniemorrislaw.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ajE6cmILRLkdgFytaybGNgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-08 04:11:05
(1 week ago)
Wordpress malicious attack:[octawp]
Web App Attack