๐ซ๐ท
Sklurk
2026-08-02 03:03:51
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-08-01 03:00:00
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-31 02:16:55
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-30 01:43:13
(1 month ago)
Web App Attack
Web App Attack
๐ช๐ธ
librebit
2026-05-17 06:58:53
(4 months ago)
Brute force
Brute-Force
๐ช๐ธ
librebit
2026-05-13 23:19:18
(4 months ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-02-13 13:59:43
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 08:59:36.598004 2026] [security2:error] [pid 10062:tid 10062] [client 104.207.40.209:13447] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "learningbyshipping.com"] [uri "/dev/.git/config"] [unique_id "aY8uSKjbNpSUt1vZJr8uGwAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-02-13 13:57:16
(7 months ago)
Try to access /api/.git/config
Web App Attack
๐บ๐ธ
myagent.site
2026-02-13 13:09:40
(7 months ago)
Blocking for trying to access an exploit file: /dev/.git/config
Hacking
๐ฉ๐ช
paissangroup
2026-02-13 08:17:10
(7 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 07:06:18
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 02:06:12.146865 2026] [security2:error] [pid 4083:tid 4083] [client 104.207.40.209:53239] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medioskreativos.com"] [uri "/frontend/.env"] [unique_id "aY7NZMl72cKFrZdXiPL91gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 06:22:16
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 01:22:09.860263 2026] [security2:error] [pid 26773:tid 26773] [client 104.207.40.209:35093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mcthorpe.com"] [uri "/config/.env"] [unique_id "aY7DEfq9PQH6U3TUGzRY8gAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 04:38:40
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 23:38:35.832601 2026] [security2:error] [pid 2396795:tid 2396795] [client 104.207.40.209:33973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "masalamadrid.com"] [uri "/.env.local"] [unique_id "aY6qy1Znqwi3wk96OCJ-lwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-02-13 04:35:14
(7 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.40.209 (US/United States/-) ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.40.209 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 03:42:06
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.40.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 22:41:55.478544 2026] [security2:error] [pid 17445:tid 17463] [client 104.207.40.209:59539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marinkovich.biz"] [uri "/config/.env"] [unique_id "aY6dg9ZkFVS7ynJ4gPRfhwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack