๐ฉ๐ช
ger-stg-sifi1
2026-07-31 21:27:10
(22 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-31 04:18:34
(1 day ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
cwytech
2026-07-30 17:13:47
(2 days ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/wp-us-login-only-high.
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-27 09:14:29
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-27 04:13:00
(5 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
Anonymous
2026-07-10 22:47:29
(3 weeks ago)
2026-07-11T00:47:28.347692+02:00 aion wordpress[575981]: XML-RPC authentication attempt for unknown ...
show more
2026-07-11T00:47:28.347692+02:00 aion wordpress[575981]: XML-RPC authentication attempt for unknown user michael from 82.165.83.170
...
show less
Hacking
Brute-Force
๐ฉ๐ช
Hazzard
2026-07-09 08:06:19
(3 weeks ago)
(wordpress) Failed wordpress login from 82.165.83.170 (DE/Germany/-/-/infong-fr11.clienthosting.eu/[ ...
show more
(wordpress) Failed wordpress login from 82.165.83.170 (DE/Germany/-/-/infong-fr11.clienthosting.eu/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
Mundo Bueno
2026-07-05 00:16:57
(3 weeks ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /xmlrpc.php | Pays: DE | UA: Mozilla/5.0 (X11; CrOS x86_ ...
show more
[ISILIA Protection v2.1] Tentative d'accรจs: /xmlrpc.php | Pays: DE | UA: Mozilla/5.0 (X11; CrOS x86_64 14541.0.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Saf
show less
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-03 21:47:54
(4 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-03 18:09:09
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 14:09:02.903618 2026] [security2:error] [pid 24089:tid 24089] [client 82.165.83.170:54492] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lightupaustralia.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lightupaustralia.org"] [uri "/wp-json/wp/v2/users"] [unique_id "akf6vhYSozwF07ew5OBV4wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-03 06:24:14
(4 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-03 06:07:56
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 02:07:49.585252 2026] [security2:error] [pid 8563:tid 8563] [client 82.165.83.170:55798] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||allfloridamedia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "allfloridamedia.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akdRteDyXzfkbnHM0RY1_wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-07-01 19:04:03
(1 month ago)
Wordfence waf block on madesimpleskincare
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 17:25:48
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 13:25:41.880206 2026] [security2:error] [pid 9683:tid 9683] [client 82.165.83.170:38766] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||naominixon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "naominixon.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "akKqlTEcrRaR-o88043owgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 09:45:49
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 05:45:46.006245 2026] [security2:error] [pid 21887:tid 21887] [client 82.165.83.170:44482] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bronislawsuchanek.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bronislawsuchanek.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akI-yYcPHyfhCnQwG-pIQgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack