41.76.213.235

Threat LevelMEDIUM43/1001 rule type
2 incidents on record · seen 5h ago
PTR dynamicpos.dedicated.co.za
Org / ASN Afrihost
Country 🇿🇦 South Africa
City Johannesburg, Gauteng
Timezone Africa/Johannesburg

Attack Analysis

WordPress XML-RPC Abuse
This IP targeted xmlrpc.php, a legacy WordPress endpoint that has been abused for brute-force authentication attacks, credential stuffing, and DDoS amplification. Any direct access to xmlrpc.php is an attack or reconnaissance attempt; modern WordPress sites should disable it entirely.

Reports (2)

Date Severity Description
4 Jun 2026 - 11:33 high Web: xmlrpc.php accessed
3 Jun 2026 - 16:29 high Web: xmlrpc.php accessed