๐บ๐ธ
Mundo Bueno
2026-06-11 00:55:44
(50 minutes ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /wp-json/wp/v2/users/me | Pays: DE | UA: Mozilla/5.0 (X1 ...
show more
[ISILIA Protection v2.1] Tentative d'accรจs: /wp-json/wp/v2/users/me | Pays: DE | UA: Mozilla/5.0 (X11; CrOS x86_64 14541.0.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Saf
show less
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-10 21:19:25
(4 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 20:14:16
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 16:14:13.158100 2026] [security2:error] [pid 7974:tid 7974] [client 87.122.21.85:26848] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bikinitweets.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bikinitweets.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ainFlTb8BkiI5UwgLfVPgQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
ptlab
2026-06-10 16:45:30
(9 hours ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 15:24:59
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 11:24:54.580361 2026] [security2:error] [pid 10039:tid 10039] [client 87.122.21.85:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||yggdrasil.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "yggdrasil.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aimBxn_8GLgYDMPioqjzVgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 14:35:27
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 10:35:19.978948 2026] [security2:error] [pid 25880:tid 25880] [client 87.122.21.85:27048] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||justiart.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "justiart.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ail2J4dBy2a4g4bCtcePRQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐น
Malta
2026-06-10 14:15:50
(11 hours ago)
87.122.21.85 - - [10/Jun/2026:16:15:50 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT ...
show more
87.122.21.85 - - [10/Jun/2026:16:15:50 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐ซ๐ท
masterguru
2026-06-10 14:06:06
(11 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 87.122.21.85 (DE/Germany/-): 1 in the last 36 ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 87.122.21.85 (DE/Germany/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-10 12:50:48
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 87.122.21.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 08:50:41.716725 2026] [security2:error] [pid 29598:tid 29598] [client 87.122.21.85:26854] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||randymcelroy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "randymcelroy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aildof9oSPxOwU9MUP956QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-06-10 10:59:01
(14 hours ago)
Detected mail brute force attack from 4 different servers
Brute-Force