๐ฉ๐ช
Vegascosmetics
2026-09-01 05:45:16
(1 day ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nest ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nesting / CPU-drain risk). Evidence: High Priority: %25252F
show less
Hacking
Exploited Host
Web App Attack
๐ต๐ฑ
Budyn
2026-08-30 02:29:02
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: elastic.goblinpot.website | URI: /backup.sql | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
klaus_ph
2026-08-18 19:59:09
(2 weeks ago)
47.82.55.27 - - [18/Aug/2026:14:37:45 +0200] "GET /gnd/Record/13850671X/Description?lng=fr HTTP/1.1" ...
show more
47.82.55.27 - - [18/Aug/2026:14:37:45 +0200] "GET /gnd/Record/13850671X/Description?lng=fr HTTP/1.1" 200 12386 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2026-07-29 18:47:54
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 28
Exploited Host
Web App Attack
๐ซ๐ท
Sklurk
2026-07-27 03:36:20
(1 month ago)
Web App Attack
Web App Attack
๐ท๐บ
Mga Admin
2026-07-26 19:15:25
(1 month ago)
47.82.55.27 - - [27/Jul/2026:02:15:24 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs767119 HT ...
show more
47.82.55.27 - - [27/Jul/2026:02:15:24 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs767119 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs767119" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
filstal.org
2026-07-26 09:12:08
(1 month ago)
Bad bot activity detected (automated scraping/probing).
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-07-25 00:42:02
(1 month ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐ท๐บ
Mga Admin
2026-07-23 06:32:45
(1 month ago)
47.82.55.27 - - [23/Jul/2026:13:32:44 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs57370735 ...
show more
47.82.55.27 - - [23/Jul/2026:13:32:44 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs57370735 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs57370735" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ท๐บ
Mga Admin
2026-07-16 15:03:15
(1 month ago)
47.82.55.27 - - [16/Jul/2026:22:03:13 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs28507565 ...
show more
47.82.55.27 - - [16/Jul/2026:22:03:13 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs28507565 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs28507565" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
LRob
2026-07-14 10:33:25
(1 month ago)
CrowdSec: PrestaShop login open-redirect / back= recursion abuse | req: /connexion?back=https%3A%2F% ...
show more
CrowdSec: PrestaShop login open-redirect / back= recursion abuse | req: /connexion?back=https%3A%2F%2Fcycling.fr%2Fconnexion%3Fback%3Dhttps%253A%252F%252Fcycling.fr%252Fconnexion%253Fback%253Dhttps%25253A%25252F%25252Fcycling.fr%25252Fconnexion%25253Fback%25253Dhttps%2525253A%2525252F%2525252Fcycling.fr%2525252Fconnexion | 2 distinct paths | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36
show less
Web App Attack
๐ท๐บ
Mga Admin
2026-07-10 08:50:38
(1 month ago)
47.82.55.27 - - [10/Jul/2026:15:50:37 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs116340275 ...
show more
47.82.55.27 - - [10/Jul/2026:15:50:37 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs116340275 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs116340275" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ท๐บ
Mga Admin
2026-07-08 10:05:48
(1 month ago)
47.82.55.27 - - [08/Jul/2026:17:05:48 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs116614217 ...
show more
47.82.55.27 - - [08/Jul/2026:17:05:48 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs116614217 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs116614217" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐จ๐ฆ
1gz
2026-07-03 00:51:29
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /author/aplikacione/page/995/
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
demomodule
2026-07-01 05:51:31
(2 months ago)
PrestaShop Security Module: nested/encoded redirect parameter abuse on "back" (occurrences=10)
Web App Attack