๐ซ๐ท
viki53
2026-09-01 08:44:39
(4 hours ago)
Website hacking attempt (path: /wp-includes/js/wp-emoji.js)
Hacking
Web App Attack
๐ฉ๐ช
AetherFox
2026-09-01 08:39:57
(4 hours ago)
AetherFox VoidGuard detected: [Tue Sep 01 08:39:56.673949 2026] [authz_core:error] [pid 191176:tid 1 ...
show more
AetherFox VoidGuard detected: [Tue Sep 01 08:39:56.673949 2026] [authz_core:error] [pid 191176:tid 191193] [client 72.14.182.122:42622] AH01630: client denied by server configuration: proxy:https://[MASKED]/
[Tue Sep 01 08:39:56.757551 2026] [authz_core:error] [pid 191205:tid 191207] [client 72.14.182.122:42638] AH01630: client denied by server configuration: proxy:https://[MASKED]/
[Tue Sep 01 08:39:56.878405 2026] [authz_core:error] [pid 191176:tid 191198] [client 72.14.182.122:42644] AH01630: client denied by server configuration: proxy:https://freebeegee.draconigen.de/
[Tue Sep 01 08:39:56.878594 2026] [authz_core:error] [pid 191176:tid 191198] [client 72.14.182.122:42644] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Tue Sep 01 08:39:57.005295 2026] [authz_core:error] [pid 191176:tid 191188] [client 72.14.182.122:42622] AH01630: client denied by server configuration: proxy:https://[MASKED]/administrator/
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
thesimonmanuel
2026-09-01 07:30:35
(5 hours ago)
2026/09/01 13:00:34 [error] 1499775#1499775: *330698 directory index of "/home/[redacted]/htdocs/[re ...
show more
2026/09/01 13:00:34 [error] 1499775#1499775: *330698 directory index of "/home/[redacted]/htdocs/[redacted].com/" is forbidden, client: 72.14.182.122, server: [redacted].com, request: "GET / HTTP/1.1", host: "[redacted].com"
2026/09/01 13:00:34 [error] 1499775#1499775: *330698 directory index of "/home/[redacted]/htdocs/[redacted].com/" is forbidden, client: 72.14.182.122, server: [redacted].com, request: "GET / HTTP/1.1", host: "[redacted].com", referrer: "https://[redacted].com/administrator/"
2026/09/01 13:00:34 [error] 1499775#1499775: *330698 directory index of "/home/[redacted]/htdocs/[redacted].com/" is forbidden, client: 72.14.182.122, server: [redacted].com, request: "GET / HTTP/1.1", host: "[redacted].com", referrer: "https://[redacted].com/administrator/manifests/files/joomla.xml"
show less
Port Scan
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-01 06:59:40
(6 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 66>=65, Abuse 62, NonEU, first-seen)
show less
Hacking
Exploited Host
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-01 05:13:54
(7 hours ago)
16 attacks on PHP URLs, Joomla URLs:
HEAD /wp-login.php HTTP/1.1
GET /administrator/manifests/files/ ...
show more
16 attacks on PHP URLs, Joomla URLs:
HEAD /wp-login.php HTTP/1.1
GET /administrator/manifests/files/joomla.xml HTTP/1.1
show less
Web App Attack
Anonymous
2026-09-01 04:18:35
(8 hours ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
Anonymous
2026-09-01 03:50:15
(9 hours ago)
scanning for potential vulnerable apps (wordpress etc.) and database accesses (ISR). Requested URI: ...
show more
scanning for potential vulnerable apps (wordpress etc.) and database accesses (ISR). Requested URI: /administrator/
show less
Web App Attack
๐ฉ๐ช
LRob
2026-09-01 00:06:50
(12 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: HEAD | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: HEAD | path: /wp-login.php | 2026-09-01 00:06 UTC
show less
Hacking
Web App Attack
๐ต๐น
Subnet Phantom Veil
2026-09-01 00:02:56
(13 hours ago)
[Security Alert] Targeted exploit scanning against CMS vulnerabilities detected. Access automaticall ...
show more
[Security Alert] Targeted exploit scanning against CMS vulnerabilities detected. Access automatically blocked and banned. [Method]: => GET. [Request]: => /administrator. Access revoked. [User-Agent]: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36. [OS]: Windows. [IP Address]: 72.14.182.122. [IoA Datetime]: 2026-09-01 00:19:18 UTC.
show less
Bad Web Bot
Hacking
Port Scan
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-31 23:20:06
(13 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-31 23:20:02
(13 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-08-31 23:06:13
(13 hours ago)
Too many Status 50X (12)
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-31 22:56:17
(14 hours ago)
72.14.182.122 - - [01/Sep/2026:00:56:12 +0200] "GET / HTTP/2.0" 200 551 "-" "Mozilla/5.0 (Windows NT ...
show more
72.14.182.122 - - [01/Sep/2026:00:56:12 +0200] "GET / HTTP/2.0" 200 551 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
72.14.182.122 - - [01/Sep/2026:00:56:13 +0200] "GET /administrator/ HTTP/2.0" 404 340 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
72.14.182.122 - - [01/Sep/2026:00:56:13 +0200] "GET /administrator/manifests/files/joomla.xml HTTP/2.0" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
72.14.182.122 - - [01/Sep/2026:00:56:13 +0200] "GET /language/en-GB/en-GB.xml HTTP/2.0" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
72.14.182.122 - - [01/Sep/2026:00:56:13 +0200] "GET /media/system/js/core.js HTTP/2.0" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (
show less
Web App Attack
Hacking
๐ธ๐ฌ
anotherwatcher
2026-08-31 22:54:38
(14 hours ago)
bad bot
Bad Web Bot