|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 17:21:29
|
watchlist
|
Accessed 'wp-admin/admin-ajax.php' 17 times, a path commonly targeted in WordPress scans, but without triggering any WAF alerts or detected threats. Requires further monitoring.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 17:16:23
|
ignore
|
No new malicious activity or requests detected since first seen, and low initial AI confidence.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 17:11:21
|
watchlist
|
Entity remains on watchlist with low confidence and severity based on initial detection; no new data to warrant a change in status.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 17:06:22
|
watchlist
|
Entity shows low confidence suspicious behavior (accessed wp-admin/admin-ajax.php) but no WAF flags or detected threat requests yet. Requires continued monitoring.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 17:01:32
|
watchlist
|
Accessed sensitive WordPress 'wp-admin/admin-ajax.php' path; however, no WAF rules were triggered and zero threat requests were detected. Requires further monitoring for suspicious patterns.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:56:29
|
ignore
|
No malicious activity detected by WAF or security rules, and associated ASN is not on the blocklist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:51:23
|
ignore
|
No malicious activity detected and zero requests since being added to watchlist, indicating it is no longer a threat.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:46:21
|
watchlist
|
Accessed a common WordPress attack path (wp-admin/admin-ajax.php) but without WAF flags, maintaining low suspicion.
|
0.30000001192092896
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:41:22
|
watchlist
|
Accessed a common WordPress attack vector (wp-admin/admin-ajax.php) without immediate WAF flags. Further monitoring is advised.
|
0.30000001192092896
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:36:30
|
ignore
|
No suspicious activity detected; zero WAF flags or threat requests, and associated ASN is not on blocklist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:31:24
|
ignore
|
No WAF flags or security rule hits detected, and AI confidence score for malicious activity is low despite accessing a common WordPress administrative path. The entity does not exhibit sufficient suspicious behavior to remain on the watchlist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:26:33
|
watchlist
|
Accessed a sensitive WordPress administration path (wp-admin/admin-ajax.php) which is a common target for enumeration and attacks, warrants monitoring despite no immediate WAF flags.
|
0.30000001192092896
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:21:40
|
ignore
|
No detected threat requests, WAF flags, or security rule hits. Observed activity (access to wp-admin/admin-ajax.php) is consistent with normal WordPress operation and shows no malicious intent.
|
1.0
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:16:35
|
ignore
|
No suspicious activity, WAF alerts, or security rule hits detected. Entity shows legitimate traffic to a common WordPress path.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:11:36
|
ignore
|
No evidence of malicious activity detected; accessed a common WordPress path without triggering WAF rules or threat alerts, and its ASN is not present in the blocklist.
|
0.949999988079071
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:06:25
|
ignore
|
No WAF flags or security rule hits detected, no reported threat requests, and low AI confidence score, indicating no persistent malicious activity.
|
0.8500000238418579
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 16:01:27
|
watchlist
|
Accessed the WordPress admin-ajax.php endpoint, a common target for reconnaissance or exploits, but no WAF alerts or threat detections were triggered. Further monitoring is required.
|
0.3499999940395355
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:56:26
|
ignore
|
No malicious activity detected since being added to watchlist (0 total requests, 0 detected threat requests, no WAF flags).
|
0.949999988079071
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:51:23
|
watchlist
|
Initial suspicious behavior detected with medium AI confidence, awaiting further activity for re-evaluation.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:46:22
|
watchlist
|
Entity accessed a sensitive WordPress admin path without triggering WAF alerts or explicit threat detections, but AI assessment suggests medium severity. Further monitoring is required.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:41:23
|
watchlist
|
Accessed a sensitive WordPress admin path (wp-admin/admin-ajax.php) without triggering WAF or security rules, warranting further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:36:20
|
ignore
|
No detected threat requests, WAF alerts, or deny rules triggered, and AI confidence score is low.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:31:43
|
watchlist
|
Accessed WordPress admin path 'wp-admin/admin-ajax.php' which is a common target for exploits. No WAF alerts or threat detections triggered, but the sensitive nature of the path warrants continued monitoring.
|
0.20000000298023224
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:26:20
|
ignore
|
No detected threat requests, WAF flags, or security rule hits since being added to watchlist. Initial suspicion not confirmed.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:21:21
|
watchlist
|
Accessed a sensitive WordPress admin path (wp-admin/admin-ajax.php) without triggering WAF or security alerts, warranting further observation.
|
0.5
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:16:19
|
ignore
|
No further malicious activity detected, zero requests observed since first seen.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:11:20
|
watchlist
|
Ongoing monitoring due to existing suspicious behavior with medium confidence.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:06:20
|
watchlist
|
Entity remains on watchlist due to existing suspicious behavior and medium AI confidence.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 15:01:18
|
watchlist
|
Entity remains in watchlist due to medium AI confidence and no new activity detected since first seen.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:56:19
|
watchlist
|
Entity shows medium AI confidence and severity, but no WAF rule hits or detected threat requests since being added to the watchlist. Requires continued monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:51:20
|
watchlist
|
Accessed sensitive WordPress administrative path 'wp-admin/admin-ajax.php' without triggering WAF alerts or explicit threat detections, warranting further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:46:22
|
ignore
|
Entity shows no detected threat requests, no WAF flags, and no security rule hits. AI confidence and severity remain low, indicating no active malicious behavior.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:41:38
|
watchlist
|
New IP making requests to 'wp-admin/admin-ajax.php', a path frequently targeted in WordPress reconnaissance and exploit attempts. No immediate threats detected by WAF or security rules, but warrants observation.
|
0.3499999940395355
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:36:21
|
ignore
|
Entity has shown no malicious activity, made 0 requests, and triggered no security rules since being added to the watchlist with a low AI confidence score.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:31:22
|
watchlist
|
Initial activity on wp-admin/admin-ajax.php with low AI confidence and no WAF flags. Further monitoring required.
|
0.30000001192092896
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:26:28
|
watchlist
|
Accessed 'wp-admin/admin-ajax.php', a sensitive WordPress path often targeted for reconnaissance. No WAF flags or threats detected yet, but warrants monitoring.
|
0.30000001192092896
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:21:18
|
ignore
|
No recent malicious activity detected, low initial confidence, and zero requests observed since being added to watchlist.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:16:21
|
watchlist
|
Entity shows low-severity suspicious activity (repeated access to wp-admin path) but lacks high-confidence threat indicators or WAF hits to justify blocking at this time.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:11:31
|
watchlist
|
Accessed a sensitive WordPress administrative path (wp-admin/admin-ajax.php). While no WAF alerts or threat detections occurred, this path is frequently targeted for reconnaissance and exploits, warranting continued observation.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:06:21
|
ignore
|
Entity shows no detected threat requests or WAF flags, and the AI confidence score for suspicious activity is low, indicating no active malicious behavior.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 14:01:24
|
watchlist
|
Accessed wp-admin/admin-ajax.php, a common target for WordPress exploitation, warranting further monitoring despite no WAF alerts or detected threats.
|
0.4000000059604645
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:56:17
|
ignore
|
No malicious activity detected since being added to watchlist, 0 total requests and 0 threat requests.
|
0.8999999761581421
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:51:20
|
watchlist
|
No new malicious activity or WAF alerts detected for this IP, but AI maintains medium confidence and severity. Further monitoring is warranted.
|
0.5
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:46:21
|
watchlist
|
Accessed WordPress admin-ajax.php endpoint which is often targeted, but no WAF flags or security rule hits detected yet. Requires further monitoring.
|
0.5
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:41:40
|
ignore
|
No suspicious activity or security rule violations detected after review, despite accessing a common WordPress admin path. No WAF alerts or threat requests.
|
1.0
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:36:17
|
ignore
|
No new malicious activity or requests detected since being added to the watchlist.
|
0.800000011920929
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:31:18
|
watchlist
|
Accessed sensitive WordPress admin path 'wp-admin/admin-ajax.php' without triggering WAF deny rules. Entity requires further monitoring for potential malicious activity.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:26:19
|
watchlist
|
IPv6 accessed sensitive WordPress path wp-admin/admin-ajax.php with no WAF flags or security rule hits, warrants further monitoring.
|
0.6000000238418579
|
severity: Severity.medium
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:21:28
|
ignore
|
No malicious activity detected, no WAF flags, and no security rule hits for the accessed common WordPress path. Entity is not currently in watchlist.
|
1.0
|
severity: Severity.low
|
|
2001:861:5860:e460:5175:54ff:bf15:b615
|
ip
|
2025-11-01 13:16:20
|
ignore
|
Entity has shown no activity or detected threat requests since being added to the watchlist; appears to be a false positive.
|
0.20000000298023224
|
severity: Severity.low
|