Congratulations,
Dumbass

> cat /var/log/your-failures.log_

A very special round of applause for 57.141.20.70 for their valiant — and entirely unsuccessful — attempt to compromise our systems. We truly couldn't have done it without you. Well, actually we could. We did. You failed.

We Might Not Know Where You Live, But...

Did you think you were anonymous? That's adorable. Here's what we know about you:

IP Address 57.141.20.70
Country United States
Region New York
City New York
ISP / Org Unknown
Timezone Unknown
Coordinates 40.7126, -74.0066

Your Digital Fingerprint

Nice browser you've got there. It'd be a shame if someone… logged it.

meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler))
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler))
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler))
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler))
Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:147.0) Gecko/20100101 Firefox/147.0 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler))
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 Edg/144.0.0.0 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler))

Your Hall of Shame

Every single one of your pathetic attempts, lovingly preserved for posterity. Spoiler alert: they all failed.

Attack Breakdown

1
SQL Injection
51
LDAP Injection
52
Total Failed Attempts

Detailed Activity Log

# Timestamp Attack Type Method Target URI Detail
1 2026-06-10T05:05:56Z SQL Injection GET /blog/null sqli [HEADER][HTTP_ACCEPT] matched /\/\*[\s\S]*?\*\//
2 2026-08-06T01:53:37Z LDAP Injection GET /blog/what-is-privilege-escalation-and-how-easily-can-it-occur-in-mature-organisations ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
3 2026-08-06T06:10:17Z LDAP Injection GET /blog/compliance-vs-threat-led-testing ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
4 2026-08-06T08:00:47Z LDAP Injection GET /sitemap.html ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
5 2026-08-06T13:19:03Z LDAP Injection GET /blog/how-often-should-an-organisation-conduct-external-and-internal-penetration-tests ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
6 2026-08-06T14:04:13Z LDAP Injection GET /blog/evidence-screenshots-and-reproduction-steps ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
7 2026-08-07T10:43:48Z LDAP Injection GET /blog/anatomy-of-a-breach-match-group-eurail ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
8 2026-08-07T10:58:34Z LDAP Injection GET /blog/executive-summaries-fund-or-fail-remediation ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
9 2026-08-07T14:38:25Z LDAP Injection GET /blog/anatomy-of-a-breach-acs-law-anonymous ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
10 2026-08-07T14:59:55Z LDAP Injection GET /blog/anatomy-of-a-breach-microsoft-250m ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
11 2026-08-07T16:19:52Z LDAP Injection GET /responsible-disclosure ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
12 2026-08-07T19:13:21Z LDAP Injection GET /blog/from-the-hacker-desk-smart-building-management-system ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
13 2026-08-07T20:26:41Z LDAP Injection GET /blog/from-the-hacker-desk-social-engineering-reception ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
14 2026-08-08T00:36:41Z LDAP Injection GET /blog/how-do-i-compare-penetration-testing-quotes-from-different-providers ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
15 2026-08-08T04:28:25Z LDAP Injection GET /cookie-policy ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
16 2026-08-08T20:46:11Z LDAP Injection GET /blog/anatomy-of-a-breach-shadow-brokers ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
17 2026-08-08T22:18:45Z LDAP Injection GET /blog/anatomy-of-a-breach-oldsmar-water ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
18 2026-08-09T11:36:43Z LDAP Injection GET /blog/anatomy-of-a-breach-twitch ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
19 2026-08-09T14:38:56Z LDAP Injection GET /sitemap-index.xml ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
20 2026-08-09T19:11:00Z LDAP Injection GET /blog/anatomy-of-a-breach-royal-mail-lockbit ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
21 2026-08-09T22:59:19Z LDAP Injection GET /blog/mustang-panda ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
22 2026-08-10T01:42:17Z LDAP Injection GET /blog/pen-test-reports-regulatory-legal-insurance ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
23 2026-08-10T15:24:48Z LDAP Injection GET /blog/anatomy-of-a-breach-lockbit-takedown ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
24 2026-08-10T19:43:09Z LDAP Injection GET /blog/anatomy-of-a-breach-620m-accounts ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
25 2026-08-10T20:21:22Z LDAP Injection GET /blog/from-the-hacker-desk-cloud-permissions-escalation ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
26 2026-08-11T01:55:35Z LDAP Injection GET /blog/anatomy-of-a-breach-ubuntu-forums ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
27 2026-08-11T04:05:56Z LDAP Injection GET /about ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
28 2026-08-11T07:11:54Z LDAP Injection GET /blog/anatomy-of-a-breach-2019-year-review ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
29 2026-08-11T21:38:53Z LDAP Injection GET /cyber-essentials ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
30 2026-08-11T23:46:05Z LDAP Injection GET /blog/ashley-madison-breach-six-month-update ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
31 2026-08-12T01:56:11Z LDAP Injection GET /blog/anatomy-of-a-breach-snapchat ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
32 2026-08-12T14:23:45Z LDAP Injection GET /blog/anatomy-of-a-breach-sony-psn ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
33 2026-08-12T21:25:04Z LDAP Injection GET /blog/penetration-testing-elevates-cyber-essentials-plus ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
34 2026-08-13T18:51:51Z LDAP Injection GET /blog/anatomy-of-a-breach-2015-year-review ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
35 2026-08-13T22:17:18Z LDAP Injection GET /blog/from-the-hacker-desk-default-credentials-ics ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
36 2026-08-13T23:22:16Z LDAP Injection GET /blog/anatomy-of-a-breach-clearview-ai ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
37 2026-08-14T02:49:20Z LDAP Injection GET /blog/responsible-proof-of-concept ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
38 2026-08-14T06:14:43Z LDAP Injection GET /blog/how-should-organisations-prepare-internally-before-commissioning-a-penetration-test ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
39 2026-08-15T05:42:46Z LDAP Injection GET /blog/difference-between-vulnerability-scan-and-penetration-test ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
40 2026-08-15T07:15:28Z LDAP Injection GET /blog/anatomy-of-a-breach-gdpr-enforcement ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
41 2026-08-15T09:14:03Z LDAP Injection GET /blog/apt41 ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
42 2026-08-15T22:43:32Z LDAP Injection GET /blog/how-does-penetration-testing-fit-into-a-broader-detect-defend-and-disrupt-cyber-strategy ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
43 2026-08-16T08:11:21Z LDAP Injection GET /blog/introduction-to-penetration-testing ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
44 2026-08-16T14:09:05Z LDAP Injection GET /cyber-essentials ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
45 2026-08-16T21:19:32Z LDAP Injection GET /blog/responsible-proof-of-concept ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
46 2026-08-16T23:22:59Z LDAP Injection GET /blog/anatomy-of-a-breach-morrisons-insider ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
47 2026-08-17T05:05:08Z LDAP Injection GET /blog/anatomy-of-a-breach-cloudbleed ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
48 2026-08-17T07:39:54Z LDAP Injection GET /blog/anatomy-of-a-breach-blue-yonder ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
49 2026-08-17T12:36:50Z LDAP Injection GET /blog/anatomy-of-a-breach-salesforce-ecosystem ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
50 2026-08-17T14:26:00Z LDAP Injection GET /blog/uk-government-breaches-pattern-of-failure ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
51 2026-08-17T16:46:02Z LDAP Injection GET /blog/from-the-hacker-desk-cloud-permissions-escalation ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i
52 2026-08-18T10:38:31Z LDAP Injection GET /blog/penetration-testing-for-small-business-uk ldap_injection [HEADER][HTTP_USER_AGENT] matched /[)(|*\\]\s*[)(|*\\]/i

In Summary

You came. You saw. You got absolutely owned by a hedgehog.

Every request you made was detected, logged, and laughed at. Our WAF didn't even break a sweat. Maybe next time try something more challenging — like reading a book on operational security.

Pro tip: If you're going to hack a cybersecurity company, maybe don't use the same IP address for every single request. Just a thought.