π«π·
dynamix
2026-10-06 23:38:58
(1 day ago)
Multiple WAF Violations
Web App Attack
π§πͺ
madeit
2026-08-31 03:53:29
(1 month ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 17:36:43
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 13:36:36.886081 2026] [security2:error] [pid 22617:tid 22617] [client 104.23.213.51:10963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.councilofthesun.org.theholographicseed.com"] [uri "/.env"] [unique_id "aoneJDTci7fBy_Buq6tfPAAAABE"], referer: https://www.google.com/search?q=www.councilofthesun.org.theholographicseed.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 15:01:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 11:00:57.434572 2026] [security2:error] [pid 2156:tid 2156] [client 104.23.213.51:11616] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.nolaanime.com"] [uri "/.git/config"] [unique_id "aoMiKbLkK92CO2BvIFFkmgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-13 10:29:16
(1 month ago)
Web App Attack
π΅π±
Jacqb
2026-07-21 19:09:21
(2 months ago)
Adres potencjalnie niebezpieczny
Brute-Force
Web App Attack
Bad Web Bot
π©πͺ
acadeova
2026-05-08 07:48:35
(5 months ago)
π¨ Recon detected (nft drop)
SRC=104.23.213.51
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journ ...
show more
π¨ Recon detected (nft drop)
SRC=104.23.213.51
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
πΊπΈ
mnsf
2026-04-08 00:05:09
(6 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-04-06 21:05:11
(6 months ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-04-05 20:05:10
(6 months ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-04-04 16:05:19
(6 months ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-03-31 13:05:18
(6 months ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-29 18:47:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 14:47:00.287681 2026] [security2:error] [pid 3655:tid 3655] [client 104.23.213.51:11576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jayworthallen.com.drjaymissdiana.com"] [uri "/.env.tmp"] [unique_id "aclzpAJM1yrm-yRYbV7q5gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-29 17:59:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 13:59:41.874835 2026] [security2:error] [pid 3755:tid 3755] [client 104.23.213.51:13098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.directsat.gulftelecom.com"] [uri "/.env.dev"] [unique_id "aclojUGL7d2KzhaiJBKOGgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 18:24:02
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 14:23:55.955112 2026] [security2:error] [pid 25155:tid 25155] [client 104.23.213.51:13932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.chandlerowen.com"] [uri "/.env"] [unique_id "acbLO55D1HpAQwe_MDE8nwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack