Next.js edge logs reveal 8,900 automated attacks targeting non-existent WordPress software
Tactic · Dev.to · stat: 8.9K hits Next.js site analysis by developer Custralis reveals that 97% of 8,900 malicious edge requests target PHP, WordPress, and database tools the site does not run. While…
Tactic · Dev.to · stat: 8.9K hits
Next.js site analysis by developer Custralis reveals that 97% of 8,900 malicious edge requests target PHP, WordPress, and database tools the site does not run. While automated bots spam generic paths, the real threat comes from framework-specific vulnerabilities like the CVE-2025-55182 exploit.
High block counts are vanity metrics; watch your framework advisories instead. Developers must ignore generic bot noise and prioritize patching framework-level vulnerabilities to protect modern JavaScript applications from targeted exploits.
Custralis blog post on Dev.to
Based on a 28-day analysis of 8,900 malicious edge requests published by developer Custralis.
Automated bots overwhelmingly target generic configuration files and legacy PHP infrastructure, meaning most logged attacks represent background noise rather than active threats to modern stacks.
Every claim ties to a primary source. See our methodology.