Singapore is climbing fast
Singapore sent 2,734 attacks this week after none the week before.
Every day, bots and attackers around the world probe the sites running on VoVo and the other sites our firewall protects. This page shows what they are trying, where it comes from and what is growing across all of them. It never shows which site was targeted or who sent it.
Data through Oct 7, 11:00 PM UTC. The numbers run one hour behind on purpose.
Singapore sent 2,734 attacks this week after none the week before.
Addresses on Google LLC sent 45.3% of all attack traffic in the last 30 days.
2,734 attacks came from Singapore in the last 7 days, 23.8% of the total.
The last 30 days of attack traffic across every site our firewall protects, grouped by where each attacking address is registered. The busiest countries are shaded. Hover one for its numbers.
Attacks in the last 7 days, and the change from the week before.
Countries whose attack traffic climbed the most compared with the week before. Only countries with meaningful volume make the list.
Every attack our firewall catches is sorted into a plain-English attack type. The line shows each one over the last 30 days.
Scans for .env, .git and config files that leak passwords and keys.
Traffic that refuses to say what software it is.
Automated scanners walking a list of known weak spots one by one.
Traffic from countries and networks a protected site has chosen not to accept.
Bots knocking on wp-login and xmlrpc, hoping for a weak WordPress install.
Looking for shells and upload scripts an earlier attacker may have left behind.
Looking for installers, phpinfo and debug consoles left switched on.
Rented cloud servers pretending to be a real person in a browser.
Attempts to download forgotten database dumps and site backups.
Searching for exposed phpMyAdmin and Adminer logins.
Hover a day for its count. Spikes are usually one scanner sweeping the whole internet at once.
A network is named only when at least 3 separate attackers came from it, so no single person can be picked out.
Every internet address belongs to a network, usually an internet provider or a hosting company. The attacks almost always come from servers their customers rent, so a place on this list shows where abuse is coming from and where reports to the network's abuse desk would do the most good. Last 30 days.
Individual IP addresses, the pages that were attacked and the sites they belong to never appear here.
Numbers are delayed an hour, so nobody can use this page to check whether a probe they just sent was noticed.
A country, network or attack type is named only after at least 3 separate attackers were seen.
Search engines and link previews that prove who they are are not counted as attackers, even when they wander somewhere they should not.
The attacks on this page are what it faces across every site it protects, VoVo sites among them. Protection is built into every plan, with nothing extra to install.
Still juggling WordPress plugins or paying for 10+ SaaS tools?
VoVo replaces them ALL with 24 integrated modules, and you can start today.
Setup in under 5 minutes.
We couldn't finish the security check. Your request has not been sent. Try again to continue.
If this keeps happening, reload the page and allow challenges.cloudflare.com in your browser.