๐ซ๐ท
tecnicorioja
2026-06-07 22:01:01
(3 hours ago)
POST /xmlrpc.php [07/Jun/2026:11:43:06
Web App Attack
Brute-Force
๐ฉ๐ช
FeG Deutschland
2026-06-07 20:25:44
(4 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐ฒ๐น
Malta
2026-06-07 15:15:51
(10 hours ago)
80.82.115.208 - - [07/Jun/2026:17:15:51 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Linu ...
show more
80.82.115.208 - - [07/Jun/2026:17:15:51 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Linux x86_64; rv:133.0) Gecko/20100101 Firefox/133.0"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐บ๐ธ
mivanovs
2026-06-07 05:53:21
(19 hours ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-06-07 05:33:02
(19 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 80.82.115.208 (GB/United Kingdom/6371.wp.34sp ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 80.82.115.208 (GB/United Kingdom/6371.wp.34sp.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
FeG Deutschland
2026-06-07 00:11:25
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฆ๐น
neo72
2026-06-06 20:06:24
(1 day ago)
Detected malicious activity - bulk block
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-06-06 12:27:37
(1 day ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 80.82.115.208 (GB/United Kingdom/6371.wp.34sp ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 80.82.115.208 (GB/United Kingdom/6371.wp.34sp.com): 1 in the last 3600 secs (0-196)
show less
Hacking
๐ฒ๐น
Malta
2026-06-06 10:30:56
(1 day ago)
80.82.115.208 - - [06/Jun/2026:12:30:56 +0200] "POST /xmlrpc.php HTTP/1.1" "Mozilla/5.0 (Windows NT ...
show more
80.82.115.208 - - [06/Jun/2026:12:30:56 +0200] "POST /xmlrpc.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-06 08:57:41
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 80.82.115.208 (6371.wp.34sp.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 80.82.115.208 (6371.wp.34sp.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 04:57:37.738902 2026] [security2:error] [pid 30736:tid 30736] [client 80.82.115.208:48024] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wild-goose.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wild-goose.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aiPhAcAohOxEMI06quTG1gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 02:41:46
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 80.82.115.208 (6371.wp.34sp.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 80.82.115.208 (6371.wp.34sp.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 22:41:38.773383 2026] [security2:error] [pid 26696:tid 26696] [client 80.82.115.208:48532] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||towlesilvapsychotherapy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "towlesilvapsychotherapy.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aiOI4v-sk2kQN6RDOX7MZgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-05 05:01:04
(2 days ago)
BruteForce IMAP/POP3/SMTP
Brute-Force
๐ซ๐ท
solution.it
2026-06-04 22:37:28
(3 days ago)
[Fri Jun 05 00:37:27.192841 2026] [php7:error] [pid 1149462:tid 1149462] [client 80.82.115.208:36332 ...
show more
[Fri Jun 05 00:37:27.192841 2026] [php7:error] [pid 1149462:tid 1149462] [client 80.82.115.208:36332] script '/var/www/html/blog.solution.it/wp-login.php' not found or unable to stat
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 17:44:26
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 80.82.115.208 (6371.wp.34sp.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 80.82.115.208 (6371.wp.34sp.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 13:44:21.730821 2026] [security2:error] [pid 1998:tid 1998] [client 80.82.115.208:44758] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||xyncom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "xyncom.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aiG5dfkcKSJFjTdrH3kh2AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-06-04 13:18:06
(3 days ago)
Wordfence waf block on registrymatters
Web App Attack