Report for IP: 212.32.76.53

Threat LevelMEDIUM29/1002 rule types across 2 attack categories
2 incidents on record · 2 rule types · last seen 33d ago
PTR N/A
Org / ASN VPN Consumer Osaka, Japan
Country 🇯🇵 Japan
City Osaka, Osaka
Timezone Asia/Tokyo

Attack Analysis

🇯🇵 Japan · Osaka · 137409 · Vpn Consumer Osaka, Japan
WordPress XML-RPC Abuse
This IP targeted xmlrpc.php, a legacy WordPress endpoint that has been abused for brute-force authentication attacks, credential stuffing, and DDoS amplification. Any direct access to xmlrpc.php is an attack or reconnaissance attempt; modern WordPress sites should disable it entirely.
Directory Brute-Force (Active Scan)
This IP triggered 10 or more HTTP 4xx errors within 60 seconds — the signature of a vulnerability scanner cycling through wordlists of common admin paths, config files, and endpoints. Tools like Nikto, Dirbuster, and Gobuster produce exactly this pattern.

Reports (2)

Date Severity Description
29 Jun 2026 - 01:13 high Web: Active scan — 10+ 4xx errors in 60s
29 Jun 2026 - 01:13 high Web: xmlrpc.php accessed