๐ซ๐ท
masterguru
2026-09-02 15:38:02
(9 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.1 (US/United States/-): 1 in ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.1 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ซ๐ท
masterguru
2026-09-02 11:25:16
(13 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.1 (US/United States/-): 2 in ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.1 (US/United States/-): 2 in the last 3600 secs (0-196)
show less
Hacking
๐ฉ๐ฐ
SaltySoftworks
2026-09-01 00:31:55
(2 days ago)
User agent spoofing
Spoofing
๐ซ๐ท
masterguru
2026-08-31 11:27:16
(2 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.1 (US/United States/-): 1 in ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.1 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 08:40:37
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 74.7.242.1 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 74.7.242.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:40:30.800324 2026] [security2:error] [pid 13658:tid 13658] [client 74.7.242.1:46586] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||drwolberg.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "drwolberg.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "apU9_rz0Ya-TPbmO9V2pXQAAAAQ"], referer: https://drwolberg.com/author/admin/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
jbcrn
2026-08-31 02:39:41
(2 days ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Request ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Requested honeypot path: /deflagration.nyctalopia/tropic/semiflexed/wrathiness/hurt/megalopa-Hyperotreti/helminthagogue/Fungia-wireworking/P/unverifiedness/stiltify/rushen/chabasie/recompose/demitint-extraocular/inagglutinable/sashing/armoried/riot/hackler/psaltress/organozinc/duodenoscopy/cinchonize/glassen-equicurve/echinoid/resina-sandaracin/ablactation-superhistorical/unretired/geneticist-froughy/twineless-unhoist/rabidly/reiterant/intercosmically-restack/octopod-historically/collogue/waucht-cephalorachidian/northing/undercasing-hala/pectoralgia/faradizer-mormaordom/sprightfulness/generale/digametic-smocking/agathodaemonic-sort/supercarpal/reconciliatory/peace/tricephalic/sheng/type/landladyish/Lallan-theatrician/intellectual/antal/opinion-poundlike/semidrachm-Neptunean/submontagne-associable
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-31 02:01:25
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ต๐ฑ
Budyn
2026-08-28 08:33:24
(5 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: gitlab.astropot.online | URI: /backup.sql | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-08-28 04:00:18
(5 days ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corpora ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-08-28T02:53:32Z
Ray ID: a32006b319c797e2
UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)
show less
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-08-28 03:48:19
(5 days ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
Vegascosmetics
2026-08-28 03:10:18
(5 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 80>=65, Abuse 90, NonEU, first-seen)
show less
Hacking
Exploited Host
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-26 13:10:15
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐ช๐ธ
librebit
2026-08-26 00:10:06
(1 week ago)
Brute force
Brute-Force
๐ณ๐ฑ
Site.eu
2026-08-24 00:33:46
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐ต๐ฑ
Budyn
2026-08-22 18:35:58
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: cache.definitelynotahoneypot.top | URI: /backup.sql | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack