Anonymous
2026-09-06 20:14:25
(7 minutes ago)
103.168.95.200 - - [06/Sep/2026:20:14:24 +0000] "GET /.env HTTP/1.1" 404 6796 "-" "Python/3.14 aioht ...
show more
103.168.95.200 - - [06/Sep/2026:20:14:24 +0000] "GET /.env HTTP/1.1" 404 6796 "-" "Python/3.14 aiohttp/3.13.5"
...
show less
Brute-Force
Web App Attack
🇺🇸
chronos
2026-09-06 20:13:45
(7 minutes ago)
[AUTORAVALT][[06/09/2026 - 17:13:45 -03:00 UTC]
Attack from [ZIAUDDIN BISWAS]
[103.168.95.200]-[RANG ...
show more
[AUTORAVALT][[06/09/2026 - 17:13:45 -03:00 UTC]
Attack from [ZIAUDDIN BISWAS]
[103.168.95.200]-[RANGE:103.168.94.0 - 103.168.95.255]
Action: BLocKed
DDoS Attack -> Participating in distributed denial-of-service.
Phishing -> Phishing websites and/or email.
Web Spam -> Comment/forum spam, HTTP referer spam, or other CMS spam.
Blog Spam -> CMS blog comment spam.]
...
show less
DDoS Attack
Phishing
Web Spam
Blog Spam
Web App Attack
🇩🇪
MBombeck
2026-09-06 18:23:33
(1 hour ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
🇵🇱
Budyn
2026-09-06 18:23:24
(1 hour ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: 51.83.237.XX | URI: /_ignition/health-check | UA: Python/3.14 aiohttp/3.13.5 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇩🇪
hidemail.app
2026-09-06 17:21:19
(3 hours ago)
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto ...
show more
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto-banned by fail2ban.
show less
Web App Attack
Hacking
🇫🇷
Little Iguana
2026-09-06 16:10:08
(4 hours ago)
trying to access non-authorized port
Port Scan
Anonymous
2026-09-06 15:49:05
(4 hours ago)
103.168.95.200 - - [06/Sep/2026:18:49:02 +0300] "GET /_ignition/health-check HTTP/1.1" 404 268
103.1 ...
show more
103.168.95.200 - - [06/Sep/2026:18:49:02 +0300] "GET /_ignition/health-check HTTP/1.1" 404 268
103.168.95.200 - - [06/Sep/2026:18:49:03 +0300] "GET /sanctum/csrf-cookie HTTP/1.1" 404 265
show less
Bad Web Bot
🇫🇷
mouafiq
2026-09-06 13:06:39
(7 hours ago)
2026-09-06 13:06:37,107 15486 INFO ? werkzeug: 103.168.95.200 - - [06/Sep/2026 13:06:37] "GET /_igni ...
show more
2026-09-06 13:06:37,107 15486 INFO ? werkzeug: 103.168.95.200 - - [06/Sep/2026 13:06:37] "GET /_ignition/health-check HTTP/1.0" 404 - 1 0.002 0.007
2026-09-06 13:06:37,356 15395 INFO ? werkzeug: 103.168.95.200 - - [06/Sep/2026 13:06:37] "GET /sanctum/csrf-cookie HTTP/1.0" 404 - 1 0.002 0.006
2026-09-06 13:06:37,639 15486 INFO ? werkzeug: 103.168.95.200 - - [06/Sep/2026 13:06:37] "GET /api/user HTTP/1.0" 404 - 1 0.002 0.005
2026-09-06 13:06:38,639 15486 INFO ? werkzeug: 103.168.95.200 - - [06/Sep/2026 13:06:38] "GET /telescope HTTP/1.0" 404 - 1 0.002 0.005
2026-09-06 13:06:38,902 15395 INFO ? werkzeug: 103.168.95.200 - - [06/Sep/2026 13:06:38] "POST /livewire/message HTTP/1.0" 404 - 1 0.002 0.006
show less
Brute-Force
SSH
Anonymous
2026-09-06 12:55:42
(7 hours ago)
103.168.95.200 - - [06/Sep/2026:12:55:42 +0000] "GET /.env HTTP/1.1" 404 2961 "-" "Python/3.14 aioht ...
show more
103.168.95.200 - - [06/Sep/2026:12:55:42 +0000] "GET /.env HTTP/1.1" 404 2961 "-" "Python/3.14 aiohttp/3.13.5"
...
show less
Brute-Force
Web App Attack
🇬🇧
sandra361
2026-09-06 12:22:32
(7 hours ago)
Port scan detected: 111 attempts across 5 ports (80, 443, 3000, 8000, 8080). | Evidence: REAPER_TARP ...
show more
Port scan detected: 111 attempts across 5 ports (80, 443, 3000, 8000, 8080). | Evidence: REAPER_TARPIT: IN=enp1s0f0 SRC=103.168.95.200 LEN=202 TOS=0x00 PREC=0x00 TTL=119 ID=1039 DF PROTO=TCP SPT=54456 DPT=8080 WINDOW=65392 RES=0x00 ACK PSH URGP=0
show less
Port Scan
🇸🇬
heyzg
2026-09-06 12:16:21
(8 hours ago)
HTTP Web Scanning (observed): 7 HTTP, 2s
Bad Web Bot
Web App Attack
🇺🇸
LotPhantom
2026-09-06 12:05:52
(8 hours ago)
2026-09-06T12:05:52.062896+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1 ...
show more
2026-09-06T12:05:52.062896+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1:fe:00:00:00:01:01:08:00 SRC=103.168.95.200 DST=157.230.217.55 LEN=52 TOS=0x02 PREC=0x00 TTL=120 ID=2285 DF PROTO=TCP SPT=56793 DPT=8080 WINDOW=64240 RES=0x00 CWR ECE SYN URGP=0
2026-09-06T12:05:52.063885+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1:fe:00:00:00:01:01:08:00 SRC=103.168.95.200 DST=157.230.217.55 LEN=52 TOS=0x02 PREC=0x00 TTL=120 ID=2284 DF PROTO=TCP SPT=56792 DPT=8000 WINDOW=64240 RES=0x00 CWR ECE SYN URGP=0
...
show less
Port Scan
Hacking
🇫🇷
Security_Whaller
2026-09-06 11:31:06
(8 hours ago)
Malicious activity detected on Honeypot.
Brute-Force
Hacking
Web App Attack
🇩🇪
MBombeck
2026-09-06 10:33:53
(9 hours ago)
Fail2Ban/traefik-botsearch on ops-01.bombeck.io: banned after 5 failures
Web App Attack
🇩🇪
ManagedStack
2026-09-06 10:30:01
(9 hours ago)
Probing access to unauthorized locations
Hacking
Exploited Host
Web App Attack