Global
URI contains /wp-admin
- Action
- Block
- Hits (24h)
- 128
- Status
Block SQLi, XSS and other application-layer attacks without touching code.
WAF: ON
POST /api/security/waf/settings with enabled and profile.
SQL Injection
Detects common SQLi payloads and bypass patterns.
Cross-Site Scripting
Blocks reflected and stored XSS attempts.
Bad bots
Flags malicious scanners and abusive crawlers.
Protocol anomalies
Catches malformed requests and protocol abuse.
Global
URI contains /wp-admin
site1.com
Header User-Agent contains curl
api.site2.com
IP equals 198.51.100.24
Blocked vs allowed (24h)
Top triggered rules
942100 SQL Injection Attack Detected
418941100 XSS Attack Detected
287920350 Host header is a numeric IP address
163913100 Scanner detection
92Top offending IPs
185.220.101.24
214 hits45.155.205.11
187 hits203.0.113.90
132 hits198.51.100.42
96 hits