๐บ๐ธ
TPI-Abuse
2026-06-09 05:11:22
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:11:17.092401 2026] [security2:error] [pid 28984:tid 28984] [client 67.227.250.236:46370] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.littlecreekrvranch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.littlecreekrvranch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiegdUFBQudV0GmoDa7hlAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 15:04:37
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 11:04:30.250753 2026] [security2:error] [pid 14365:tid 14365] [client 67.227.250.236:60218] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.losbarbarosdelnorte.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.losbarbarosdelnorte.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiWIfqfBNkWiOrC3vboigQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 17:28:56
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 13:28:50.075475 2026] [security2:error] [pid 963:tid 963] [client 67.227.250.236:60916] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.lockdownclaim.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.lockdownclaim.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiRY0qB7b67nxLLHIJnxeAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 15:36:17
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 11:36:14.537763 2026] [security2:error] [pid 6655:tid 6655] [client 67.227.250.236:52458] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.inquisitivequincie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.inquisitivequincie.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiQ-blcRZ4cAZauptW4P3wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 04:23:30
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 00:23:23.933210 2026] [security2:error] [pid 17968:tid 17976] [client 67.227.250.236:33450] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||daraluz.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "daraluz.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aiOgu0qWqtXIHeibQoqjbQAAAMU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-06 01:40:02
(4 days ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-06-04 07:07:51
(6 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 20:41:53
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 16:41:49.545326 2026] [security2:error] [pid 9543:tid 9543] [client 67.227.250.236:60904] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tcit.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tcit.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aiCRjTr16enSqANVYwsm2AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 15:20:58
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 11:20:55.613322 2026] [security2:error] [pid 6501:tid 6501] [client 67.227.250.236:37040] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tcomputerguy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tcomputerguy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiBGV3BMfHJhU6H4DVXCLQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 09:22:56
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 05:22:49.850956 2026] [security2:error] [pid 26844:tid 26844] [client 67.227.250.236:55580] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kmelson.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kmelson.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah_yaWjBBcgap2xqrmuN4QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 08:05:24
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 04:05:21.205885 2026] [security2:error] [pid 19275:tid 19275] [client 67.227.250.236:50172] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.photosatthebeach.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.photosatthebeach.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah_gQSrmqDNpLeU4ciI0LAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-03 02:29:12
(1 week ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
Anonymous
2026-06-01 19:14:49
(1 week ago)
[server.tmg.gr] httpd-xmlrpc-post: sites=crisis-management2017.eu; logs=/var/log/httpd/domains/crisi ...
show more
[server.tmg.gr] httpd-xmlrpc-post: sites=crisis-management2017.eu; logs=/var/log/httpd/domains/crisis-management2017.eu.log; samples=/xmlrpc.php
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 01:38:51
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 21:38:46.522586 2026] [security2:error] [pid 18010:tid 18010] [client 67.227.250.236:49756] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bethanpearce.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bethanpearce.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahzipmY-jfWvLml3SEpqsgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 10:06:45
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 67.227.250.236 (mail.neotechnetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 06:06:38.633792 2026] [security2:error] [pid 23337:tid 23337] [client 67.227.250.236:38430] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.brazilianbottom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.brazilianbottom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahllLjB4OV01LIK8cRqSyAAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack