๐ฒ๐ฝ
octageeks.com
2026-10-04 04:13:03
(2 days ago)
Wordpress malicious attack:[octawp]
Web App Attack
Anonymous
2026-09-28 14:58:18
(1 week ago)
2026-09-28T16:58:16.602684+02:00 aion wordpress[1499131]: Blocked user enumeration attempt from 80.9 ...
show more
2026-09-28T16:58:16.602684+02:00 aion wordpress[1499131]: Blocked user enumeration attempt from 80.94.250.203
...
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-28 14:44:10
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 10:44:08.445895 2026] [security2:error] [pid 9011:tid 9011] [client 80.94.250.203:40874] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||monmouthcountydanceclasses.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "monmouthcountydanceclasses.com"] [uri "/wp-json/wp/v2/users"] [unique_id "arp9ODo4FmVq0FyambfJygAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 14:25:28
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 10:25:20.210109 2026] [security2:error] [pid 19151:tid 19151] [client 80.94.250.203:43400] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||xyncom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "xyncom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "arp40MDk1mUk7QfGgT3zBQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-28 01:12:52
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-09-27 04:20:43
(1 week ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:26:05
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:25:58.667960 2026] [security2:error] [pid 14750:tid 14750] [client 80.94.250.203:64660] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||market1st.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "market1st.com"] [uri "/wp-json/wp/v2/users"] [unique_id "arfkBmYLaxUPMudr6VjbxwAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-25 13:01:45
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-24 10:23:35
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-09-23 04:13:29
(1 week ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 14:47:00
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 80.94.250.203 (203.250.94.80.dyn.idknet.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 10:46:53.585438 2026] [security2:error] [pid 25163:tid 25163] [client 80.94.250.203:36270] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||circleinthesquare.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "circleinthesquare.org"] [uri "/wp-json/wp/v2/users"] [unique_id "arFDXd9QKhE66LlaL8YpJwAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Tripwire
2026-09-21 06:51:18
(2 weeks ago)
Wordpress login attempts
Brute-Force
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-09-21 02:07:16
(2 weeks ago)
WordPress login attempt
Brute-Force
๐ฉ๐ช
FeG Deutschland
2026-09-20 04:34:54
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-20 04:18:56
(2 weeks ago)
cloudlinux2 fail2ban: 2026-09-20 06:15:02,913 fail2ban.filter [1597]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-20 06:15:02,913 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 185.223.152.34 - 2026-09-20 06:15:02cloudlinux2 fail2ban: 2026-09-20 06:14:58,932 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 185.223.152.34 - 2026-09-20 06:14:58cloudlinux2 fail2ban: 2026-09-20 06:15:12,179 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 185.194.178.84 - 2026-09-20 06:15:11cloudlinux2 fail2ban: 2026-09-20 06:15:16,835 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 185.194.178.101 - 2026-09-20 06:15:16cloudlinux2 fail2ban: 2026-09-20 06:15:12,306 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 185.194.178.101 - 2026-09-20 06:15:11cloudlinux2 fail2ban: 2026-09-20 06:15:09,549 fail2ban.filter [1597]: INFO [plesk-modsecurity] Found 223.185.14.118 - 2026-09-20 06:15:09cloudlinux2 fail2ban: 2026-09-20 06:15:44,746 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 80.94.250.203 - 2026-09-20 06:15:4
show less
Web App Attack