๐ฆ๐บ
paulshipley.com.au
2026-07-31 22:25:13
(16 hours ago)
[Sat Aug 01 08:25:12.396621 2026] [security2:error] [pid 733521] [client 91.124.88.98:44193] [client ...
show more
[Sat Aug 01 08:25:12.396621 2026] [security2:error] [pid 733521] [client 91.124.88.98:44193] [client 91.124.88.98] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 15)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "rjryanpartners.com.au"] [uri "/"] [unique_id "am0gyLpNgQ7htb027ZExtQAAAAU"]
...
show less
Web App Attack
๐น๐ท
neron
2026-07-28 22:19:38
(3 days ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-07-27 02:20:17
(5 days ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-07-27 02:11:39
(5 days ago)
91.124.88.98 - - [27/Jul/2026:04:11:31 +0200] "GET /wp-themes.php HTTP/1.1" 301 535 "-" "Mozilla/5.0 ...
show more
91.124.88.98 - - [27/Jul/2026:04:11:31 +0200] "GET /wp-themes.php HTTP/1.1" 301 535 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Safari/537.36"
91.124.88.98 - - [27/Jul/2026:04:11:32 +0200] "GET /wp-includes/sodium_compat/src/index.php HTTP/1.1" 301 587 "-" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:79.0) Gecko/20100101 Firefox/79.0"
91.124.88.98 - - [27/Jul/2026:04:11:32 +0200] "GET /wp-content/plugins/erinyani/asasx.php HTTP/1.1" 301 583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:74.0) Gecko/20100101 Firefox/74.0"
91.124.88.98 - - [27/Jul/2026:04:11:33 +0200] "GET /mariju.php HTTP/1.1" 301 529 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0"
91.124.88.98 - - [27/Jul/2026:04:11:33 +0200] "GET /waf_defender.php HTTP/1.1" 301 541 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
91.124.88.98 - - [27/Jul/2026:04:11:33 +
show less
Web App Attack
Brute-Force
๐ซ๐ท
Octopuce
2026-07-23 19:44:09
(1 week ago)
Aggressive web search of vulnerable pages: /wp-includes/customize/dedi1.php /wp-includes/pomo/autolo ...
show more
Aggressive web search of vulnerable pages: /wp-includes/customize/dedi1.php /wp-includes/pomo/autoload_classmap.php /wp-admin/css/colors/index. ...
show less
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-07-21 02:48:26
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
dynamix
2026-07-20 08:00:01
(1 week ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-07 13:59:12
(3 weeks ago)
Excessive 404/403 errors
Brute-Force
๐ซ๐ท
Octopuce
2026-06-29 22:53:00
(1 month ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/core/core.php /filemanager.php /confi ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/core/core.php /filemanager.php /config.php /wp-content/plugins/fix/ /wp-includes ...
show less
Web App Attack
๐ช๐ธ
masterguru
2026-06-24 07:59:24
(1 month ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐ฑ๐ป
garmtech.com
2026-06-18 08:22:15
(1 month ago)
IM360 WAF: Block access to the shell MV:/xl2023.php
Hacking
๐ฑ๐ป
garmtech.com
2026-06-18 08:21:52
(1 month ago)
IM360 WAF: Suspicious files in jQuery
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-18 08:18:50
(1 month ago)
IM360 WAF: Interaction with fake plugin MV:/wp-content/plugins/pwnd/pwnd.php
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-05-29 22:34:44
(2 months ago)
Brute-Force
Web App Attack
๐ฉ๐ช
macrob
2026-05-29 11:34:42
(2 months ago)
2026/05/29 11:34:40 [error] 4160935#4160935: *265479704 access forbidden by rule, client: 91.124.88. ...
show more
2026/05/29 11:34:40 [error] 4160935#4160935: *265479704 access forbidden by rule, client: 91.124.88.98, server: binixo.pl, request: "GET //wp-includes/ID3/license.txt HTTP/2.0", host: "binixo.pl"
2026/05/29 11:34:41 [error] 4160936#4160936: *265394871 access forbidden by rule, client: 91.124.88.98, server: binixo.pl, request: "GET //xmlrpc.php?rsd HTTP/2.0", host: "binixo.pl"
2026/05/29 11:34:41 [error] 4160932#4160932: *265479089 access forbidden by rule, client: 91.124.88.98, server: binixo.pl, request: "GET //blog/wp-includes/wlwmanifest.xml HTTP/2.0", host: "binixo.pl"
...
show less
Web App Attack