๐ฌ๐ง
openstrike.co.uk
2026-02-16 06:13:13
(3 months ago)
11 attacks on env grabbing URLs, VC URLs:
GET /.env.local HTTP/1.1
GET /new/.git/config HTTP/1.1
Hacking
๐ฌ๐ง
consul.to
2026-02-15 12:50:21
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-02-15 12:31:54
(3 months ago)
Try to access /v2/.git/config
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-02-15 11:27:40
(3 months ago)
(mod_security) mod_security (id:949110) triggered by 104.207.52.10 (GB/United Kingdom/-): N in the l ...
show more
(mod_security) mod_security (id:949110) triggered by 104.207.52.10 (GB/United Kingdom/-): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 11:25:16
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:25:09.683250 2026] [security2:error] [pid 4418:tid 4418] [client 104.207.52.10:44611] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thevillageartcenter.com"] [uri "/backup/.git/config"] [unique_id "aZGtFX4WPLHlEw_CoPAEJAAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 04:45:45
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 23:45:40.442686 2026] [security2:error] [pid 13871:tid 13871] [client 104.207.52.10:16763] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxfreeworld.com"] [uri "/api/.git/config"] [unique_id "aZFPdFIjo50Edx9YJk_BNgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 04:19:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 23:18:58.808771 2026] [security2:error] [pid 17298:tid 17298] [client 104.207.52.10:11485] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "strawberryhillchristmas.com"] [uri "/api/.env"] [unique_id "aZFJMiscDhcuA4PX8ZVRjAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 03:18:57
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:18:53.970394 2026] [security2:error] [pid 27728:tid 27728] [client 104.207.52.10:17083] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "starktigers75.com"] [uri "/.git/config"] [unique_id "aZE7He26ub6kKx5g0qRevQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-15 03:05:32
(3 months ago)
Blocking for trying to access an exploit file: /.env.save
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-15 02:44:57
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:44:50.085164 2026] [security2:error] [pid 24223:tid 24223] [client 104.207.52.10:33645] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naghmehfarahmand.com"] [uri "/dev/.git/config"] [unique_id "aZEzIhyqxZ6s0dTBng31mgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 00:45:58
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 19:45:53.668626 2026] [security2:error] [pid 19945:tid 19945] [client 104.207.52.10:36885] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mplsmedia.com"] [uri "/.env"] [unique_id "aZEXQQt7Mgwpx4SUf6koUwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 00:25:51
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 19:25:43.906029 2026] [security2:error] [pid 14275:tid 14275] [client 104.207.52.10:13771] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "loveoflearning.com"] [uri "/api/.git/config"] [unique_id "aZESh69N8unDmWAg1L2ImQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 22:50:14
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:50:09.328831 2026] [security2:error] [pid 17723:tid 17723] [client 104.207.52.10:56341] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "morganmotors.com"] [uri "/.env.save"] [unique_id "aZD8IWCXIfN4K87MT1kLzQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 22:32:43
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:32:35.637889 2026] [security2:error] [pid 43190:tid 43190] [client 104.207.52.10:37341] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lightedpath.com"] [uri "/.env.local"] [unique_id "aZD4A-xtR_ZZTtT-CYJ2mgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 22:15:08
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:15:01.764618 2026] [security2:error] [pid 2167:tid 2212] [client 104.207.52.10:15121] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "moidawg.gg"] [uri "/v2/.git/config"] [unique_id "aZDz5SZIRZBCB3DKHld1DwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack