Starting yesterday, our sensors picked up a small number of scans for „wordfence-waf.php“. This particular script is used by Wordfence, a solution to protect WordPress sites. During the Wordfence install, the wordpress-waf.php file will be created in the site's root directory [1].