๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
๐ณ๐ฑ
jjnxpct
2026-02-20 04:54:21
(4 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.aws/credentials (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐จ๐ญ
Origon
2026-02-19 05:19:55
(4 months ago)
http-sensitive-files - IP: 104.207.56.174 - time="2026-02-19T06:19:55+01:00" level=info msg="(555f6 ...
show more
http-sensitive-files - IP: 104.207.56.174 - time="2026-02-19T06:19:55+01:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 104.207.56.174 (DE/200373) : 4h ban on Ip 104.207.56.174" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 03:21:09
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:21:04.756928 2026] [security2:error] [pid 572049:tid 572049] [client 104.207.56.174:34275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keysenterprise.com"] [uri "/api/.git/config"] [unique_id "aZaBoAih_CLwDs-StcLupAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-19 03:05:17
(4 months ago)
Too many Status 40X (11)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 02:28:26
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 21:28:19.263914 2026] [security2:error] [pid 17367:tid 17367] [client 104.207.56.174:52727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kbalan.com"] [uri "/dev/.git/config"] [unique_id "aZZ1QwUKpXJmOcU8j0GTgAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 21:01:23
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 16:01:16.941238 2026] [security2:error] [pid 2492787:tid 2492787] [client 104.207.56.174:25051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ttlatl.com"] [uri "/.env.production"] [unique_id "aZYonGgK7_l-7IncyVukCgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 19:41:07
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 14:41:02.274088 2026] [security2:error] [pid 8453:tid 8453] [client 104.207.56.174:39311] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tonydelov.net"] [uri "/frontend/.env"] [unique_id "aZYVzuSOhkrcQXadS4MXFwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 18:29:06
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 13:28:58.181962 2026] [security2:error] [pid 26720:tid 26720] [client 104.207.56.174:34355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theurbanlogger.com"] [uri "/dev/.git/config"] [unique_id "aZYE6iwTD8AecFCAX8H-mwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2026-01-26 07:44:56
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2026-01-05 20:20:29
(5 months ago)
Attempted brute force login to web vpn 18 time(s); last attempt for 2026.01.05 is noted in report ti ...
show more
Attempted brute force login to web vpn 18 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฏ๐ต
S.O.B.A. Dev.
2025-12-31 09:17:53
(5 months ago)
Web vulnerability scanning
Web Spam
Brute-Force
Web App Attack
Anonymous
2025-12-20 10:03:14
(5 months ago)
wordpress-trap
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-12-18 22:06:26
(6 months ago)
WP Admin Scan Activities
Web App Attack
๐บ๐ธ
myagent.site
2025-12-13 19:12:00
(6 months ago)
Blocking for trying to access an exploit file: /old//kickstart.php
Hacking