Automate a firewall rule from url blacklist wildcard

On a daily basis we get scanned by various bots looking for known vulnerabilities 9 out of10 they always look at the same urls mostly WordPress etc.

Is it possible to create a trigger for any IP that starts looking for known blacklist URL such wp-content or wp-admin to automatically be added to a firewall rule blocking the IP?

We do have captcha rules in place to detect bots, but these guys slip through.

You’d have to process this from your end and use the API to add those IP addresses to the Deny list. Something like this:

Ok thanks we can code it via the API, thought I would check if it was doable in the web console.

