Report for IP: 102.22.81.63

Threat LevelMEDIUM32/1001 rule type
2 incidents on record · last seen 8d ago
PTR getting.hohensk.vip
Org / ASN DataKeepers
Country 🇿🇦 South Africa
City Johannesburg, Gauteng
Timezone Africa/Johannesburg

Attack Analysis

WordPress XML-RPC Abuse
This IP targeted xmlrpc.php, a legacy WordPress endpoint that has been abused for brute-force authentication attacks, credential stuffing, and DDoS amplification. Any direct access to xmlrpc.php is an attack or reconnaissance attempt; modern WordPress sites should disable it entirely.

Reports (2)

Date Severity Description
22 Sep 2026 - 12:41 high WordPress: xmlrpc.php accessed
22 Sep 2026 - 11:42 high WordPress: xmlrpc.php accessed