π¨π
backslash
2026-05-23 05:06:06
(3 weeks ago)
Bad Web Bot
π¬π§
PeravixGroup
2026-05-10 12:16:02
(1 month ago)
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Sever ...
show more
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
π¬π§
PeravixGroup
2026-05-07 06:24:32
(1 month ago)
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Sever ...
show more
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
π¦πΊ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
π³π±
homeshowdomain.nl
2026-02-19 23:00:41
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-19
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-02-19 02:34:56
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 21:34:48.941657 2026] [security2:error] [pid 29037:tid 29043] [client 104.207.57.242:21767] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kd9uri.com"] [uri "/.env.local"] [unique_id "aZZ2yCNDMqHhiXp-2au3sgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Aetherweb Ark
2026-02-18 23:52:28
(3 months ago)
(mod_security) mod_security (id:949110) triggered by 104.207.57.242 (DE/Germany/-): N in the last X ...
show more
(mod_security) mod_security (id:949110) triggered by 104.207.57.242 (DE/Germany/-): N in the last X secs
show less
Web App Attack
π©πͺ
ut-addicted.com
2026-02-18 22:32:02
(3 months ago)
\[Wed Feb 18 23:31:57.648890 2026\] \[:error\] \[pid 12255:tid 140545930204928\] \[client 104.207.57 ...
show more
\[Wed Feb 18 23:31:57.648890 2026\] \[:error\] \[pid 12255:tid 140545930204928\] \[client 104.207.57.242:51895\] \[client 104.207.57.242\] ModSecurity: Access denied with code 403 \(phase 2\). Operator GE matched 5 at TX:anomaly_score. \[file "/usr/local/apache/modsecurity-owasp-latest/rules/REQUEST-949-BLOCKING-EVALUATION.conf"\] \[line "57"\] \[id "949110"\] \[msg "Inbound Anomaly Score Exceeded \(Total Score: 5\)"\] \[severity "CRITICAL"\] \[tag "application-multi"\] \[tag "language-multi"\] \[tag "platform-multi"\] \[tag "attack-generic"\] \[hostname "ut-addicted.com"\] \[uri "/.env"\] \[unique_id "aZY93RC-0G08jTs8DvgF8QAAANY"\]
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 22:32:00
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 17:31:54.241722 2026] [security2:error] [pid 23277:tid 23277] [client 104.207.57.242:28101] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uswebforce.com"] [uri "/.env.staging"] [unique_id "aZY92hIc1sglwifUrkB93gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 21:00:01
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 15:59:56.149141 2026] [security2:error] [pid 1332:tid 1332] [client 104.207.57.242:51233] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tt-w.com"] [uri "/.env"] [unique_id "aZYoTOHcULhvZVTYr_NVIgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-02-18 20:07:29
(3 months ago)
Scanning/Probing (23)
Brute-Force
Web App Attack
πΊπΈ
myagent.site
2026-02-18 18:47:32
(3 months ago)
Blocking for trying to access an exploit file: /test/.git/config
Hacking
πΊπΈ
TPI-Abuse
2026-02-18 18:37:24
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 13:37:18.251524 2026] [security2:error] [pid 1162447:tid 1162471] [client 104.207.57.242:20091] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theyogicat.com"] [uri "/frontend/.env"] [unique_id "aZYG3jopwitT-X-x-1BxJwAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 15:49:23
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 10:49:17.993273 2026] [security2:error] [pid 24003:tid 24003] [client 104.207.57.242:51865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yacht-register-san-marino.com"] [uri "/dev/.git/config"] [unique_id "aZXffbERO4cpaBNzN11KTwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-18 13:16:40
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.57.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 08:16:33.294780 2026] [security2:error] [pid 20479:tid 20479] [client 104.207.57.242:58299] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wildcomaui.com"] [uri "/test/.git/config"] [unique_id "aZW7sR1kmCfSp8yeR_SZQwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack