๐ฒ๐ฝ
octageeks.com
2026-08-08 04:14:04
(1 week ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
๐บ๐ธ
floreriaexpress
2026-08-08 01:39:30
(1 week ago)
FakeADS-Anti: country:IN | https://floreriaexpresschile.cl/wp-json/litespeed/v1/members
Bad Web Bot
๐ฉ๐ช
stinpriza
2026-08-08 01:23:36
(1 week ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-08 00:48:02
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 20:47:50.472051 2026] [security2:error] [pid 19092:tid 19092] [client 124.253.181.99:4730] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||scrunchiebuttbikinis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "scrunchiebuttbikinis.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "anZ8tkKDlQHPKCVR2cjjaQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
omc
2026-08-08 00:40:58
(2 weeks ago)
GET /wp-json/mepr/v1/members [Q4].
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-08 00:32:47
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 20:32:39.406162 2026] [security2:error] [pid 4082522:tid 4082527] [client 124.253.181.99:35923] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||scottspencergfx.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "scottspencergfx.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anZ5J5FTp1o7gacS0y2cxgAAAYM"], referer: https://scottspencergfx.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-08 00:14:51
(2 weeks ago)
CrowdSec: crowdsecurity/http-cve-probing | req: /wp-json/batch/v1/members | UA: Mozilla/5.0 (Windows ...
show more
CrowdSec: crowdsecurity/http-cve-probing | req: /wp-json/batch/v1/members | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
show less
Web App Attack
๐ง๐ช
cmbplf
2026-08-08 00:06:13
(2 weeks ago)
6.822 requests in 1 hour (1mo2w6d)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-08 00:05:50
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 20:05:43.138488 2026] [security2:error] [pid 313379:tid 313379] [client 124.253.181.99:25031] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||newcastle91.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "newcastle91.org"] [uri "/wp-json/wp/v2/users"] [unique_id "anZy1xYqfQLAwpGSQhTQAQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-07 23:57:23
(2 weeks ago)
[08/Aug/2026:02:57:23 +0300] -- 124.253.181.99 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp- ...
show more
[08/Aug/2026:02:57:23 +0300] -- 124.253.181.99 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-json/wp/v2/users?_fields=slug&per_page=100&page=1 HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฎ๐ช
Coolnagour
2026-08-07 23:51:53
(2 weeks ago)
http-probing: /wp-json/buddyboss/v1/members
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 23:43:10
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 19:43:01.657881 2026] [security2:error] [pid 2591113:tid 2591113] [client 124.253.181.99:21777] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||uccryakima.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "uccryakima.org"] [uri "/wp-json/wp/v2/users"] [unique_id "anZthSUDUPRV0YtZKu-ZIgAAACI"], referer: https://uccryakima.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 23:25:01
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 124.253.181.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 19:24:57.809183 2026] [security2:error] [pid 2833550:tid 2833550] [client 124.253.181.99:49711] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||vaghyst.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "vaghyst.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anZpSdqA_wKdsYtU-mQUTgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Vianpyro
2026-08-07 23:23:25
(2 weeks ago)
Honeypot: 6 request(s) in 119 min. Paths: /wp-json/ldlms/v2/users, /wp-json/buddypress/v1/members, / ...
show more
Honeypot: 6 request(s) in 119 min. Paths: /wp-json/ldlms/v2/users, /wp-json/buddypress/v1/members, /wp-json/ultimate-member/v1/users. Method(s): GET. UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko). ASN: 17917 (Chandigarh).
show less
Web App Attack
Bad Web Bot
Brute-Force
Anonymous
2026-08-07 23:17:58
(2 weeks ago)
Web application attack detected.
Web App Attack