๐ซ๐ท
ecode hosting
2025-08-29 09:58:07
(1 year ago)
Domain : ecode.com.tr
Rule : config
2025-08-21 16:29:15 10.100.1.20 GET /.git/config - 443 - 100.24. ...
show more
Domain : ecode.com.tr
Rule : config
2025-08-21 16:29:15 10.100.1.20 GET /.git/config - 443 - 100.24.50.163 HTTP/1.1 Mozilla/5.0 (Linux; Android 9; Pixel 2 XL) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36 - www.ecode.com.tr 302 8 0 363 255 416 - -
show less
Hacking
SQL Injection
๐ซ๐ท
ecode hosting
2025-08-29 09:08:05
(1 year ago)
Domain : cozumdoktoru.com
Rule : config
2025-08-21 16:25:25 10.100.1.20 GET /.git/config - 443 - 100 ...
show more
Domain : cozumdoktoru.com
Rule : config
2025-08-21 16:25:25 10.100.1.20 GET /.git/config - 443 - 100.24.50.163 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/43.0.2357.93 Safari/537.36 - www.cozumdoktoru.com 404 8 0 1396 240 762 - -
show less
Hacking
SQL Injection
Anonymous
2025-08-25 23:34:11
(1 year ago)
Automated report (2025-08-26T07:34:11+08:00). Caught probing for exposed Git data.
Hacking
Web App Attack
Anonymous
2025-08-25 23:26:15
(1 year ago)
Automated report (2025-08-26T07:26:15+08:00). Caught probing for exposed Git data.
Hacking
Web App Attack
๐บ๐ธ
www.itsapost.com
2025-08-25 23:09:31
(1 year ago)
Inbound Anomaly Score Exceeded (Total Inbound Score: 5 - SQLI=0,XSS=0,RFI=0,LFI=5,RCE=0,PHPI=0,HTTP= ...
show more
Inbound Anomaly Score Exceeded (Total Inbound Score: 5 - SQLI=0,XSS=0,RFI=0,LFI=5,RCE=0,PHPI=0,HTTP=0,SESS=0): Restricted File Access Attempt
show less
Hacking
Anonymous
2025-08-24 19:47:06
(1 year ago)
$f2bV_matches
Brute-Force
๐บ๐ธ
mnsf
2025-08-24 15:05:05
(1 year ago)
Too many Status 40X (21)
Brute-Force
Web App Attack
Anonymous
2025-08-21 20:16:51
(1 year ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐ฉ๐ช
sdos.es
2025-08-21 16:44:36
(1 year ago)
"Restricted File Access Attempt - Matched Data: /.git/ found within REQUEST_FILENAME: /.git/config"
Web App Attack
๐ซ๐ฎ
oh.mg
2025-08-21 16:40:52
(1 year ago)
[Thu Aug 21 18:40:25.680656 2025] [security2:error] [pid 2567213:tid 2567237] [client 100.24.50.163: ...
show more
[Thu Aug 21 18:40:25.680656 2025] [security2:error] [pid 2567213:tid 2567237] [client 100.24.50.163:58024] [client 100.24.50.163] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.mmn.on.ca"] [uri "/.git/config"] [unique_id "aKdL-dL4nX7g9Y0jlER1dgAAAI8"]
[Thu Aug 21 18:40:52.426675 2025] [security2:error] [pid 2567213:tid 2567242] [client 100.24.50.163:0] [client 100.24.50.163] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.10.0-dev"] [ta
...
show less
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2025-08-21 16:36:31
(1 year ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ณ๐ฑ
Jordy
2025-08-21 16:30:12
(1 year ago)
21/Aug/2025:18:30:11.288034 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
21/Aug/2025:18:30:11.288034 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 100.24.50.163] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "1128"] [id "920450"] [msg "HTTP header is restricted by policy (/accept-charset/)"] [data "Restricted header detected: /accept-charset/"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/12.1"] [hostname "www.fc-pilsener.nl"] [uri "/.git/config"] [unique_id "aKdJk3UZenxr9aAiq2MuvAAAABA"]
21/Aug/2025:18:30:11.288034 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 100.24.50.163] ModSecurity: Warning. Matched phrase "/.git/" at REQUEST_FILENAME
...
show less
Web App Attack
๐บ๐ธ
Charlesiv
2025-08-21 16:07:11
(1 year ago)
Triggered Cloudflare WAF (botFight) from US.
Action taken: MANAGED_CHALLENGE
ASN: 14618 (AMAZON-AES) ...
show more
Triggered Cloudflare WAF (botFight) from US.
Action taken: MANAGED_CHALLENGE
ASN: 14618 (AMAZON-AES)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2025-08-21T16:04:33Z
Ray ID: 972b5def1c925ad1
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 YaBrowser/19.6.0.1583 Yowser/2.5 Safari/537.36
show less
Bad Web Bot
๐ซ๐ฎ
Jordy
2025-08-21 16:02:39
(1 year ago)
21/Aug/2025:18:04:20.388946 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
21/Aug/2025:18:04:20.388946 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 100.24.50.163] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "1128"] [id "920450"] [msg "HTTP header is restricted by policy (/accept-charset/)"] [data "Restricted header detected: /accept-charset/"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/12.1"] [hostname "versie.vetspons.nl"] [uri "/.git/config"] [unique_id "aKdDhEi-_GF0M4-kTl02HwAAAAE"]
21/Aug/2025:18:04:20.388946 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 100.24.50.163] ModSecurity: Warning. Matched phrase "/.git/" at REQUEST_FILENAME
...
show less
Web App Attack
Anonymous
2025-08-21 16:01:51
(1 year ago)
$f2bV_matches
Brute-Force