PHPUnit
PHPUnit
- Attempts
- 1,137
- Attackers
- 31
- Sensors
- 24
Exploitation intelligence
Sensor-backed exploitation attempts against internet-facing services, mapped to CVEs and reviewed for confidence. See where attacker activity is concentrating before severity scores alone tell the story.
24-hour activity, grouped by observation date · 18 Aug–19 Aug 2026 UTC
Exploitation Attempts
24-hour activity, grouped by observation date
Click a day to filter stats and tables to that date.
The highest-volume CVEs in this snapshot, ranked by mapped exploitation attempts—not theoretical severity.
PHPUnit
WordPress
Apache Software Foundation
NoneCms
ThinkPHP
IBM
Search the highest-volume records in the selected window. Each row shows activity breadth and recency alongside raw volume.
How to Read the Signal
Attempts indicate volume. Unique IPs and sensors indicate breadth. First and last seen show persistence. Use the linked CVE record for evidence and remediation context.
PHPUnit
PHPUnit
WordPress
WordPress
Apache HTTP Server
Apache Software Foundation
NoneCms
NoneCms
ThinkPHP Framework
ThinkPHP
Langflow OSS
IBM
react-server-dom-webpack, react-server-dom-turbopack, react-server-dom-parcel
Meta
langflow
langflow-ai
Now Platform
ServiceNow
ADC, Gateway
NetScaler
Gravity SMTP
RocketGenius
Cisco Adaptive Security Appliance (ASA) Software
Cisco
Fortinet FortiOS, FortiProxy
Fortinet
Langflow
Langflow
GPON home routers
Dasan
cacti
Cacti
DIR-823X
D-Link
Sentry
ivanti
TP-Link Archer AX21 (AX1800)
TP-Link
Cisco Identity Services Engine Software
Cisco
SDK
Realtek
ADC, Gateway
NetScaler
DGN1000
NETGEAR
Showing 23 of 23 highest-volume records · 18 Aug–19 Aug 2026 UTC
Early warning alerts
Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.