๐บ๐ธ
TPI-Abuse
2026-09-01 10:50:41
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:50:35.199145 2026] [security2:error] [pid 29322:tid 29562] [client 74.1.21.6:46046] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chaoticperception.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chaoticperception.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apat-1rIW3k8MOvy-NEKcwAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-31 18:00:57
(2 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-31 15:15:45
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 12:25:26
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:25:21.124517 2026] [security2:error] [pid 11121:tid 11121] [client 74.1.21.6:42844] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jvwebinars.vanemby.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jvwebinars.vanemby.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apVysevUyMc8_ZjJiCzaCAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-31 04:08:08
(2 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 17:42:32
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 13:42:28.266617 2026] [security2:error] [pid 26360:tid 26360] [client 74.1.21.6:46546] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stalbansparish.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stalbansparish.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apRrhMF9ptMqkP71ZS-zWwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-30 09:21:56
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 08:30:11
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 04:30:06.058825 2026] [security2:error] [pid 8455:tid 8455] [client 74.1.21.6:39088] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||xyncom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "xyncom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apKYjkm07tu4z4Tpt7mIuwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 20:07:05
(5 days ago)
2026-08-28T22:07:03.266217+02:00 aion wordpress[3983066]: Blocked user enumeration attempt from 74.1 ...
show more
2026-08-28T22:07:03.266217+02:00 aion wordpress[3983066]: Blocked user enumeration attempt from 74.1.21.6
...
show less
Hacking
Brute-Force
๐บ๐ธ
nationaleventpros.com
2026-08-28 18:52:11
(5 days ago)
WordPress login attempt
Brute-Force
๐ฉ๐ช
LRob
2026-08-28 13:49:28
(5 days ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users | 2026-08-28 13:49 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 09:46:54
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:46:47.520594 2026] [security2:error] [pid 24815:tid 24815] [client 74.1.21.6:51288] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||artevoix.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "artevoix.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apFZBx9z1LbLNkNc6XKypAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 22:54:06
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 74.1.21.6 (core.hosteg.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:54:01.602239 2026] [security2:error] [pid 31989:tid 31989] [client 74.1.21.6:59284] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||desertalfas.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "desertalfas.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDACWhoIESRzDtcudkU8gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack