π«π·
dynamix
2026-10-09 08:07:42
(1 day ago)
Multiple WAF Violations
Web App Attack
π§πͺ
madeit
2026-10-09 00:51:12
(1 day ago)
Web App Attack
π§πͺ
madeit
2026-09-26 07:45:54
(2 weeks ago)
Web App Attack
π§πͺ
madeit
2026-09-12 20:25:40
(3 weeks ago)
Web App Attack
π§π·
chronos
2026-09-06 13:47:35
(1 month ago)
2026-09-06 09:24:17 UTC-3||Unauthorized connection attempt detected for port scanning
Port Scan
π§πͺ
madeit
2026-08-09 08:34:50
(2 months ago)
Web App Attack
π―π΅
S.O.B.A. Dev.
2026-05-08 20:58:21
(5 months ago)
Persistent port scanning or vulnerability scanning
Port Scan
πΊπΈ
mnsf
2026-04-07 03:05:41
(6 months ago)
Scanning/Probing (18)
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-04-06 02:05:45
(6 months ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
πΊπΈ
Starburst SysOp Team
2026-03-31 06:23:33
(6 months ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-mnz6-1)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-22 12:10:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 22 08:10:32.915893 2026] [security2:error] [pid 16055:tid 16055] [client 104.23.209.105:13750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.frontlinefirestop.com"] [uri "/docker/.env"] [unique_id "ab_cOHG5ZsVEB0i5etqjFQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 18:09:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 14:09:01.519183 2026] [security2:error] [pid 3354:tid 3354] [client 104.23.209.105:13991] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.blackstarmgmt.net"] [uri "/srv/.env"] [unique_id "ab7evfnWKqGfwXoW_6Jo4gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 07:56:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 03:55:48.861737 2026] [security2:error] [pid 4186328:tid 4186328] [client 104.23.209.105:11801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.thomasanthonyquinn.com"] [uri "/var/www/.env"] [unique_id "ab5PBKob_j1KURKmzyxZ6AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 04:28:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 00:28:22.997565 2026] [security2:error] [pid 23713:tid 23713] [client 104.23.209.105:13740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.bikinipageone.com"] [uri "/.env.development.local"] [unique_id "ab4eZpbSDvK8QRenTTlSJAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 01:44:02
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 21:43:56.391991 2026] [security2:error] [pid 7313:tid 7313] [client 104.23.209.105:11532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.nue18.com"] [uri "/api/.env"] [unique_id "ab333Ki8wcphfAd72yirRwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack