๐ฉ๐ช
ger-stg-sifi1
2026-06-29 16:24:13
(15 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 16:02:03
(16 hours ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 12:02:00.444470 2026] [security2:error] [pid 6742:tid 6742] [client 69.57.160.88:42110] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jfexpressfr8.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jfexpressfr8.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "akKW-PSv00_RfTVfVpw9ywAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 12:30:04
(19 hours ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 08:29:59.500779 2026] [security2:error] [pid 7154:tid 7154] [client 69.57.160.88:48308] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nwtree.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nwtree.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akJlR9wDoQd5z2vkHnS3OQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-29 07:12:24
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-06-29 05:44:26
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 05:34:53
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 01:34:45.515635 2026] [security2:error] [pid 27555:tid 27555] [client 69.57.160.88:46222] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.concentricsteel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.concentricsteel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akID9dn1yNi6bqlrNSBuBwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-29 04:22:16
(1 day ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 03:57:48
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 23:57:43.598272 2026] [security2:error] [pid 27612:tid 27612] [client 69.57.160.88:53062] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||oruhu.org.circulodesonido.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "oruhu.org.circulodesonido.org"] [uri "/wp-json/wp/v2/users"] [unique_id "akHtN7CZWZFh9gJW3i3KBwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-29 03:06:38
(1 day ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 02:50:22
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 22:50:16.390010 2026] [security2:error] [pid 28320:tid 28320] [client 69.57.160.88:58812] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigislandhawaiicoffee.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigislandhawaiicoffee.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "akHdaHqAfZmHxdKqCQYJEgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 01:13:11
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 21:13:06.448565 2026] [security2:error] [pid 8861:tid 8861] [client 69.57.160.88:48916] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||genevaatlantic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "genevaatlantic.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akHGosQDXC3Cgp7c1MRXwQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Mundo Bueno
2026-06-29 01:02:32
(1 day ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /wp-json/wp/v2/users/6 | Pays: US | UA: Mozilla/5.0 (Win ...
show more
[ISILIA Protection v2.1] Tentative d'accรจs: /wp-json/wp/v2/users/6 | Pays: US | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Sa
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 00:32:29
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 20:32:24.143772 2026] [security2:error] [pid 26313:tid 26313] [client 69.57.160.88:48894] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gellertdealers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gellertdealers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akG9GO1X_WlaiTGsaQELiQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 22:38:04
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.57.160.88 (nc-ph-4284.gsecureclouds.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 18:38:00.164912 2026] [security2:error] [pid 5437:tid 5437] [client 69.57.160.88:59104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fadcometal.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fadcometal.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akGiSH0Esd4TDJfYar6zbAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
Coolnagour
2026-06-28 20:36:47
(1 day ago)
http-probing: /wp-sitemap-users-1.xml
Web App Attack