๐ธ๐ช
webbfabriken
2024-01-25 14:03:53
(2 years ago)
spam or other hacking activities reported by webbfabriken security servers
Attack reported by Webbf ...
show more
spam or other hacking activities reported by webbfabriken security servers
Attack reported by Webbfabiken Security API - WFSecAPI
show less
Web Spam
Anonymous
2024-01-16 12:24:34
(2 years ago)
(wordpress-user-enum) Failed wordpress-user-enum trigger from 8.222.135.65 (SG/Singapore/-)
Brute-Force
๐ณ๐ฑ
maxxsense
2024-01-16 10:34:55
(2 years ago)
(wordpress-user-enum) Failed wordpress-user-enum trigger from 8.222.135.65 (SG/Singapore/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-01-15 14:02:32
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 09:02:24.949501 2024] [security2:error] [pid 10465] [client 8.222.135.65:61490] [client 8.222.135.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pakistanvision.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pakistanvision.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZaU68CXmsERYHYYRXclqBgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
IRT@Unisi
2024-01-15 11:36:07
(2 years ago)
web_app3:WordPress.REST.API.Username.Enumeration.Information.Disclosure
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-15 11:07:18
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 06:07:11.518888 2024] [security2:error] [pid 16147] [client 8.222.135.65:26232] [client 8.222.135.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.furryfriendzy.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.furryfriendzy.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ZaUR38lLOClW-huyck9XrQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-15 09:37:35
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 04:37:29.534128 2024] [security2:error] [pid 8122] [client 8.222.135.65:12086] [client 8.222.135.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.miroconsulting.es|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.miroconsulting.es"] [uri "/wp-json/wp/v2/users"] [unique_id "ZaT82SpSgEd6Q0Eog8fj8AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-14 17:22:53
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 14 12:22:46.184535 2024] [security2:error] [pid 26947:tid 47501677709056] [client 8.222.135.65:60000] [client 8.222.135.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||east-lease.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "east-lease.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZaQYZs-IzzSEn0uFstjkLgAAAE0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-14 17:01:54
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 8.222.135.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 14 12:01:49.433824 2024] [security2:error] [pid 20734] [client 8.222.135.65:44114] [client 8.222.135.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cloudex.link|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cloudex.link"] [uri "/wp-json/wp/v2/users"] [unique_id "ZaQTfZTWe3dJzsGDBJkWggAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-01-14 04:50:26
(2 years ago)
WP xmlrpc [2024-01-14T05:50:26+01:00]
Hacking
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-01-13 22:25:51
(2 years ago)
WP xmlrpc [2024-01-13T23:25:51+01:00]
Hacking
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-01-13 20:24:02
(2 years ago)
WP xmlrpc [2024-01-13T21:24:02+01:00]
Hacking
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-01-12 23:07:03
(2 years ago)
WP xmlrpc [2024-01-13T00:07:03+01:00]
Hacking
Web App Attack
๐บ๐ธ
mawan
2024-01-12 22:49:20
(2 years ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-01-12 17:46:43
(2 years ago)
WP xmlrpc [2024-01-12T18:46:43+01:00]
Hacking
Web App Attack