Anonymous
2026-07-23 15:04:01
(19 hours ago)
Suspicious or malicious traffic has been detected
Web App Attack
๐จ๐ฆ
electronico
2026-07-07 06:10:19
(2 weeks ago)
83.142.53.168 - - [07/Jul/2026:17:10:17 +1100] "POST /xmlrpc.php HTTP/1.1" 200 4231 "-" "curl/7.88.1 ...
show more
83.142.53.168 - - [07/Jul/2026:17:10:17 +1100] "POST /xmlrpc.php HTTP/1.1" 200 4231 "-" "curl/7.88.1"
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-06-22 05:47:05
(1 month ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
Anonymous
2026-06-21 22:09:30
(1 month ago)
[osotir.org] httpd-login-spray-site: sites=agonistes.gr.synathlountes; logs=/var/log/httpd/domains/a ...
show more
[osotir.org] httpd-login-spray-site: sites=agonistes.gr.synathlountes; logs=/var/log/httpd/domains/agonistes.gr.synathlountes.log; samples=site_wide=true | distinct_ips=11 | /wp-login.php
show less
Hacking
Web App Attack
Anonymous
2026-06-12 09:56:42
(1 month ago)
[osotir.org] httpd-login-spray-site: sites=agonistes.gr.synathlountes; logs=/var/log/httpd/domains/a ...
show more
[osotir.org] httpd-login-spray-site: sites=agonistes.gr.synathlountes; logs=/var/log/httpd/domains/agonistes.gr.synathlountes.log; samples=site_wide=true | distinct_ips=17 | /wp-login.php
show less
Hacking
Web App Attack
๐ณ๐ฟ
billyborsht
2026-05-17 01:43:34
(2 months ago)
2026-05-17T13:43:33.222089+12:00 southern wordpress(poetryinhell.org)[964153]: Authentication attemp ...
show more
2026-05-17T13:43:33.222089+12:00 southern wordpress(poetryinhell.org)[964153]: Authentication attempt for unknown user admin from 83.142.53.168
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 23:52:47
(2 months ago)
(mod_security) mod_security (id:211030) triggered by 83.142.53.168 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211030) triggered by 83.142.53.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 19:52:43.585295 2026] [security2:error] [pid 665:tid 665] [client 83.142.53.168:20267] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at ARGS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "17"] [id "211030"] [rev "3"] [msg "COMODO WAF: LDAP Injection Attack||www.genesis-castle.com|F|2"] [data "Matched Data: ('~'||( found within ARGS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agexyyEvFeKTKLTZCVsm-wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
SOC PR
2026-04-21 08:14:22
(3 months ago)
IPS: WordPress HTTP Brute Force Login Attempt.
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-12-17 17:58:18
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 83.142.53.168 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 83.142.53.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 17 12:58:10.507131 2025] [security2:error] [pid 9448:tid 9448] [client 83.142.53.168:11803] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||citati.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "citati.net"] [uri "/"] [unique_id "aULvMjgLvVZ6fVQKAhXVFwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-12-09 06:26:17
(1 year ago)
main_page":"ss'nvOpzp; AND 1=1 OR (<'
SQL Injection
Anonymous
2024-09-28 07:20:59
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฉ๐ช
SCHAPPY
2023-07-26 18:53:40
(2 years ago)
IP was involved in L7 DDoS attack.
DDoS Attack
Anonymous
2021-05-28 15:45:00
(5 years ago)
Credential Stuffing
Brute-Force