Below is a list of the last 500 suspicious interactions with this IP.
Last observed Sat, 30 May 2026 08:13:43 (Australia/Brisbane)
| Description | Count |
|---|---|
| ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | 106 |
| ET HUNTING Javascript Sandbox Escape via Global Object (process) | 41 |
| ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | 41 |
| ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | 41 |
| ET HUNTING XML External Entity Injection Inbound M1 | 39 |
| ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | 39 |
| ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | 39 |
| ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | 39 |
| Timestamp | Description | Protocol | Destination Port |
|---|---|---|---|
| 2026-05-30 08:13:43 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-30 08:13:43 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-30 08:13:43 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-30 05:19:48 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-30 04:05:10 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-30 04:05:10 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-30 04:05:10 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-30 04:05:10 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-28 07:18:12 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-28 07:18:12 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-28 07:18:12 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-28 04:06:05 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-28 03:02:27 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-28 03:02:27 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-28 03:02:27 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-28 03:02:27 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-27 19:42:37 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-27 06:49:51 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-27 06:49:51 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-27 06:49:51 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-27 03:26:56 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-27 02:20:01 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-27 02:20:01 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-27 02:20:01 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-27 02:20:01 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-26 19:06:34 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-26 02:45:15 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-26 01:43:58 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-26 01:43:58 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-26 01:43:58 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-26 01:43:58 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-25 18:23:17 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-24 04:12:43 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-24 04:12:43 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-24 04:12:43 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-24 01:35:51 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-24 00:32:10 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-24 00:32:10 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-24 00:32:10 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-24 00:32:10 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-23 03:48:09 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-23 03:48:09 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-23 03:48:09 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-22 23:55:54 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-22 23:55:54 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-22 23:55:54 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-22 23:55:54 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-22 16:38:32 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-22 08:18:31 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-22 08:18:31 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-22 03:15:36 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-22 03:15:36 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-22 03:15:36 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-22 00:35:16 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-21 23:26:58 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-21 23:26:58 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-21 23:26:58 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-21 23:26:58 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-21 16:11:47 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-21 07:26:31 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-21 07:26:31 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-20 15:29:35 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-20 02:03:05 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-20 02:03:05 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-20 02:03:05 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-19 23:20:37 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-19 22:18:55 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-19 22:18:55 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-19 22:18:55 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-19 22:18:55 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-19 01:39:56 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-19 01:39:56 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-19 01:39:56 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-18 22:45:23 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-18 21:42:17 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-18 21:42:17 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-18 21:42:17 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-18 21:42:17 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-18 14:23:29 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-18 00:56:26 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-18 00:56:26 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-18 00:56:26 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-17 22:15:32 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-17 21:10:41 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-17 21:10:41 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-17 21:10:41 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-17 21:10:41 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-17 05:36:27 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-17 05:36:27 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-16 00:04:17 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-16 00:04:17 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-16 00:04:17 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-15 21:09:04 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-15 20:01:16 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-15 20:01:16 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-15 20:01:16 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-15 20:01:16 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-15 04:29:53 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-15 04:29:53 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-14 12:10:56 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-13 11:38:51 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-12 22:24:41 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-12 22:24:41 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-12 22:24:41 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-12 19:23:49 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-12 18:16:55 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-12 18:16:55 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-12 18:16:55 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-12 18:16:55 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-11 21:57:15 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-11 21:57:15 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-11 21:57:15 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-11 18:57:15 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-11 17:47:01 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-11 17:47:01 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-11 17:47:01 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-11 17:47:01 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-11 10:30:07 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-11 02:27:45 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-11 02:27:45 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-09 20:53:49 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-09 20:53:49 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-09 20:53:49 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-09 17:43:24 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-09 16:38:53 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-09 16:38:53 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-09 16:38:53 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-09 16:38:53 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-08 21:45:42 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-08 21:45:42 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-08 21:45:42 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-08 18:31:56 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-08 16:13:28 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-08 16:13:28 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-08 16:13:28 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-08 16:13:28 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-06 23:04:25 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-06 23:04:25 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-06 23:04:25 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-06 20:17:00 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-06 19:14:25 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-06 19:14:25 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-06 19:14:25 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-06 19:14:25 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-05 12:34:53 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 8080 |
| 2026-05-05 12:34:53 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 8080 |
| 2026-05-05 12:34:53 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 8080 |
| 2026-05-05 11:26:03 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-05 02:34:22 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-05 02:34:22 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-04 19:04:48 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-04 17:55:07 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-04 17:55:07 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-04 17:55:07 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-04 17:55:07 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-04 11:59:04 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 8080 |
| 2026-05-04 11:59:04 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 8080 |
| 2026-05-04 11:59:04 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 8080 |
| 2026-05-04 10:46:00 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-03 21:27:19 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-03 21:27:19 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-03 21:27:19 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-03 18:31:10 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-03 17:21:26 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-03 17:21:26 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-03 17:21:26 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-03 17:21:26 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-03 02:02:26 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-03 02:02:26 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-02 20:46:04 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-05-02 20:46:04 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-05-02 20:46:04 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-05-02 17:45:44 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-02 16:42:25 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-05-02 16:42:25 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-05-02 16:42:25 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-05-02 16:42:25 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-05-01 10:18:31 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 8080 |
| 2026-05-01 10:18:31 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 8080 |
| 2026-05-01 10:18:31 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 8080 |
| 2026-05-01 09:08:19 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-05-01 00:16:33 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-05-01 00:16:33 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-30 16:19:49 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-30 08:15:03 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-29 18:58:26 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-29 18:58:26 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-29 18:58:26 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-29 16:10:18 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-29 14:58:42 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-29 14:58:42 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-29 14:58:42 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-29 14:58:42 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-29 07:40:21 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-26 21:58:17 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-26 21:58:17 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-26 13:59:53 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-26 05:55:20 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-25 16:36:58 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-25 16:36:58 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-25 16:36:58 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-25 13:36:02 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-25 12:27:33 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-25 12:27:33 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-25 12:27:33 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-25 12:27:33 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-24 15:59:33 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-24 15:59:33 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-24 15:59:33 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-24 12:50:44 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-24 11:49:33 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-24 11:49:33 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-24 11:49:33 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-24 11:49:33 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-23 20:09:21 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-23 20:09:21 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-23 15:20:54 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-23 15:20:54 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-23 15:20:54 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-23 12:23:27 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-23 11:17:40 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-23 11:17:40 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-23 11:17:40 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-23 11:17:40 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-23 04:03:07 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-21 22:18:14 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-21 00:38:56 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-21 00:38:56 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-21 00:38:56 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-20 21:31:33 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-20 20:29:01 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-20 20:29:01 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-20 20:29:01 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-20 20:29:01 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-20 05:00:00 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-20 05:00:00 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-19 21:08:44 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-19 04:23:42 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-19 04:23:42 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-18 23:35:19 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-18 23:35:19 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-18 23:35:19 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-18 19:21:21 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-18 19:21:21 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-18 19:21:21 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-18 19:21:21 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-18 12:07:52 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-15 21:24:33 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-15 21:24:33 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-15 21:24:33 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-15 18:30:56 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-15 17:26:20 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-15 17:26:20 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-15 17:26:20 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-15 17:26:20 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-15 01:46:34 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-15 01:46:34 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-14 21:01:42 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-14 21:01:42 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-14 21:01:42 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-14 18:02:38 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-14 16:58:04 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-14 16:58:04 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-14 16:58:04 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-14 16:58:04 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-14 09:40:10 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-14 00:52:21 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-14 00:52:21 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-13 20:31:56 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-13 20:31:56 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-13 20:31:56 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-13 20:31:56 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-13 20:31:56 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-13 20:31:56 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-13 17:20:03 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-13 16:18:40 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-13 16:18:40 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-13 16:18:40 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-13 16:18:40 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-13 09:09:02 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-13 00:31:38 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-13 00:31:38 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-12 16:29:09 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-11 23:31:34 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-11 23:31:34 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-11 18:58:28 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-11 18:58:28 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-11 18:58:28 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-11 16:02:45 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-11 14:59:48 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-11 14:59:48 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-11 14:59:48 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-11 14:59:48 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-11 07:56:30 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-10 18:39:31 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-10 18:39:31 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-10 18:39:31 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-10 15:37:00 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-10 14:31:40 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-10 14:31:40 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-10 14:31:40 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-10 14:31:40 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-09 06:36:48 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-08 22:25:38 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-08 22:25:38 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-08 06:07:19 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-07 16:41:15 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-07 16:41:15 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-07 16:41:15 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-07 13:31:05 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-07 12:29:35 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-07 12:29:35 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-07 12:29:35 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-07 12:29:35 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-06 15:33:56 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-06 15:33:56 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-06 15:33:56 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-06 12:38:16 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-06 11:34:11 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-06 11:34:11 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-06 11:34:11 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-06 11:34:11 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-06 04:16:47 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-05 14:46:37 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-05 14:46:37 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-05 14:46:37 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-05 11:50:57 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-05 10:45:56 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-05 10:45:56 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-05 10:45:56 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-05 10:45:56 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-04 14:05:28 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-04 14:05:28 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-04 14:05:28 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-04 10:56:05 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-04 09:50:38 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-04 09:50:38 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-04-04 09:50:38 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-04 09:50:38 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-04 02:40:13 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-04-03 10:00:22 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-02 16:57:16 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-02 16:57:16 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-02 09:14:38 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-01 11:12:14 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-04-01 11:12:14 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-04-01 11:12:14 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-04-01 08:05:29 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-04-01 06:55:40 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-04-01 06:55:40 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-04-01 06:55:40 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-04-01 06:55:40 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-03-31 23:42:43 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-03-30 09:17:36 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-03-30 09:17:36 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-03-30 09:17:36 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-03-30 06:25:30 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-03-30 05:13:59 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-03-30 05:13:59 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-03-30 05:13:59 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-03-30 05:13:59 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-03-29 08:28:17 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-03-29 08:28:17 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-03-29 08:28:17 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-03-29 05:26:55 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-03-29 04:24:46 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-03-29 04:24:46 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-03-29 04:24:46 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-03-29 04:24:46 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-03-28 07:42:23 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-03-28 07:42:23 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-03-28 07:42:23 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-03-28 04:31:48 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 80 |
| 2026-03-28 03:25:13 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-03-28 03:25:13 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-03-28 03:25:13 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-03-28 03:25:13 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
| 2026-03-27 20:08:39 | ET INFO PHP Xdebug Extension Query Parameter (XDEBUG_SESSION_START) | TCP | 8080 |
| 2026-03-27 07:23:43 | ET HUNTING Javascript Sandbox Escape via Global Object (process) | TCP | 80 |
| 2026-03-27 07:23:43 | ET HUNTING Javascript Prototype Pollution Attempt via __proto__ in HTTP Body | TCP | 80 |
| 2026-03-27 07:23:43 | ET WEB_SPECIFIC_APPS React Server Components React2Shell Unsafe Flight Protocol Property Access (CVE-2025-55182) | TCP | 80 |
| 2026-03-27 02:30:41 | ET EXPLOIT Possible Zimbra Autodiscover Servlet XXE (CVE-2019-9670) | TCP | 80 |
| 2026-03-27 02:30:41 | ET HUNTING XML External Entity Injection Inbound M1 | TCP | 80 |
| 2026-03-27 02:30:41 | ET EXPLOIT Zimbra <8.8.11 - XML External Entity Injection/SSRF Attempt (CVE-2019-9621) | TCP | 80 |
| 2026-03-27 02:30:41 | ET WEB_SERVER Possible XXE SYSTEM ENTITY in POST BODY. | TCP | 80 |
Back to top