๐ญ๐บ
bcsaba
2026-10-09 20:52:58
(43 minutes ago)
CMS (WordPress or Joomla) login attempt.
77.68.33.236 - - [09/Oct/2026:22:52:56 +0200] "POST /wp-log ...
show more
CMS (WordPress or Joomla) login attempt.
77.68.33.236 - - [09/Oct/2026:22:52:56 +0200] "POST /wp-login.php HTTP/1.1" 200 4314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.43 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36 OPR/119.0.0.0"
show less
Hacking
Brute-Force
Web App Attack
๐น๐ท
oalver
2026-10-09 20:04:19
(1 hour ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /xmlrpc.php (HTTP 200). First seen: 2026-10-09. Risk score: 60/100.
show less
Web App Attack
๐น๐ท
oalver
2026-10-09 16:04:35
(5 hours ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /xmlrpc.php (HTTP 200). First seen: 2026-10-09. Risk score: 30/100.
show less
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-10-09 14:54:03
(6 hours ago)
Wordfence waf block on jestrellafoundation
Web App Attack
Anonymous
2026-09-19 21:35:50
(2 weeks ago)
2026-09-19T23:35:41.080435+02:00 wordpress(www.home-hunting.de)[717185]: Blocked user enumeration a ...
show more
2026-09-19T23:35:41.080435+02:00 wordpress(www.home-hunting.de)[717185]: Blocked user enumeration attempt from 77.68.33.236
show less
Web Spam
Blog Spam
Brute-Force
Web App Attack
๐ง๐ช
taivas.nl
2026-09-19 21:02:10
(2 weeks ago)
Bad_requests
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-19 20:34:10
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 77.68.33.236 (london1.web-servers.uk): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 77.68.33.236 (london1.web-servers.uk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 16:34:02.406790 2026] [security2:error] [pid 9936:tid 9936] [client 77.68.33.236:46722] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fitnessgearmagazine.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fitnessgearmagazine.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq7xunYEXd_AnLvVcB9_ZwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 19:33:03
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 77.68.33.236 (london1.web-servers.uk): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 77.68.33.236 (london1.web-servers.uk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 15:32:57.812901 2026] [security2:error] [pid 22119:tid 22119] [client 77.68.33.236:56840] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||guarinofurnituredesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "guarinofurnituredesigns.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq7jaaHyvYajC3-NOy69_QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-19 19:09:44
(2 weeks ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-197)
Hacking
๐ซ๐ท
masterguru
2026-09-19 17:50:36
(2 weeks ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-201)
Hacking
๐ฉ๐ช
LRob
2026-09-19 17:05:50
(2 weeks ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users (+1 more) | query: author=1 (+2 more) | 2026-09-19 17:05 UTC
show less
Hacking
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-19 16:52:25
(2 weeks ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
mnsf
2026-09-19 15:05:23
(2 weeks ago)
Abuse Detected (21)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 15:04:05
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 77.68.33.236 (london1.web-servers.uk): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 77.68.33.236 (london1.web-servers.uk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 11:04:00.512010 2026] [security2:error] [pid 1193:tid 1193] [client 77.68.33.236:59618] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bickleton.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bickleton.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aq6kYPbgGHjTpGqEyeA6nAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-19 13:42:07
(2 weeks ago)
WordPress: User enumeration. Pattern match "(author\\\\= (88030-193)
Hacking