🇵🇱
Budyn
2026-09-04 19:57:49
(5 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: teddypot.pro | URI: /wp-login.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇩🇪
NxtGenIT
2026-09-04 07:02:16
(6 days ago)
CiscoASA Honeypot hit, Payload: "GET /+CSCOE+/logon.html HTTP/1.1" 302 -,
Brute-Force
🇨🇿
lp
2026-09-03 15:21:40
(6 days ago)
Unauthorized VPN login attempts: 7 attempts were recorded from 65.111.6.58
2026-09-03T16:53:59+02:00 ...
show more
Unauthorized VPN login attempts: 7 attempts were recorded from 65.111.6.58
2026-09-03T16:53:59+02:00 vpn Access-Reject 'candle' station: 65.111.6.58 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-03T16:55:26+02:00 vpn Access-Reject 'appweb' station: 65.111.6.58 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-03T16:58:56+02:00 vpn Access-Reject 'sheirf' station: 65.111.6.58 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-03T17:00:39+02:00 vpn Access-Reject 'raw' station: 65.111.6.58 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-03T17:02:16+02:00 vpn Access-Reject 'arthit' station: 65.111.6.58 auth-type: - realm: vse.cz nas: <redacted> called: <redac
show less
Brute-Force
Web App Attack
🇺🇸
SX Communications
2026-09-02 08:57:32
(1 week ago)
Blocked abusive HTTP application-layer DoS / botnet traffic from 65.111.6.58: traffic from this addr ...
show more
Blocked abusive HTTP application-layer DoS / botnet traffic from 65.111.6.58: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
DDoS Attack
Bad Web Bot
Exploited Host
🇩🇪
Roper123
2026-08-14 15:20:51
(3 weeks ago)
WP-LOGIN brute-force
Web App Attack
🇫🇷
Sklurk
2026-08-03 00:40:36
(1 month ago)
Web App Attack
Web App Attack
🇫🇷
ELYAZ
2026-07-30 09:20:09
(1 month ago)
(wordpress) Failed wordpress login from 65.111.6.58 (US/United States/-): (CF_ENABLE)
Brute-Force
🇦🇹
neo72
2026-07-29 11:07:29
(1 month ago)
Detected malicious activity - bulk block
Brute-Force
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 month ago)
Apache probe; attempts=30; exact paths: /xmlrpc.php
Web App Attack
🇮🇹
CoreTech srl
2026-07-27 23:28:56
(1 month ago)
cloudlinux2 fail2ban: 2026-07-28 01:23:58,671 fail2ban.filter [1917]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-07-28 01:23:58,671 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 45.3.42.65 - 2026-07-28 01:23:57cloudlinux2 fail2ban: 2026-07-28 01:24:00,116 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 104.207.60.211 - 2026-07-28 01:23:59cloudlinux2 fail2ban: 2026-07-28 01:24:23,622 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 65.111.15.110 - 2026-07-28 01:24:22cloudlinux2 fail2ban: 2026-07-28 01:24:22,041 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 45.3.54.215 - 2026-07-28 01:24:21cloudlinux2 fail2ban: 2026-07-28 01:24:20,455 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 65.111.6.58 - 2026-07-28 01:24:19cloudlinux2 fail2ban: 2026-07-28 01:24:34,550 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 65.111.24.141 - 2026-07-28 01:24:33cloudlinux2 fail2ban: 2026-07-28 01:24:36,170 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 45.3.50.108 - 2026-07-28 01:24:35cloudlinux2 fail2
show less
Web App Attack
🇩🇪
ger-stg-sifi1
2026-07-27 18:33:13
(1 month ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
🇮🇹
CoreTech srl
2026-07-27 13:03:58
(1 month ago)
cloudlinux2 fail2ban: 2026-07-27 14:59:10,126 fail2ban.filter [1917]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-07-27 14:59:10,126 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 217.181.90.174 - 2026-07-27 14:59:09cloudlinux2 fail2ban: 2026-07-27 14:59:20,936 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 45.3.39.150 - 2026-07-27 14:59:20cloudlinux2 fail2ban: 2026-07-27 14:59:41,525 fail2ban.actions [1917]: NOTICE [plesk-modsecurity] Unban 58.136.19.184cloudlinux2 fail2ban: 2026-07-27 14:59:44,318 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 104.207.58.25 - 2026-07-27 14:59:43cloudlinux2 fail2ban: 2026-07-27 14:59:41,259 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 65.111.25.138 - 2026-07-27 14:59:40cloudlinux2 fail2ban: 2026-07-27 14:59:42,734 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 65.111.6.58 - 2026-07-27 14:59:42cloudlinux2 fail2ban: 2026-07-27 14:59:56,652 fail2ban.filter [1917]: INFO [plesk-wordpress] Found 104.207.37.147 - 2026-07-27 14:59:56cloudlinux2 fail2ban: 2026-07-2
show less
Web App Attack
🇲🇽
octageeks.com
2026-07-26 04:14:05
(1 month ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
🇬🇧
gigatech
2026-07-25 05:30:18
(1 month ago)
Webserver Probing
Web App Attack
🇫🇷
ELYAZ
2026-07-24 08:37:26
(1 month ago)
(wordpress) Failed wordpress login from 65.111.6.58 (US/United States/-): (CF_ENABLE)
Brute-Force