Anonymous
2026-10-07 07:24:18
(1 day ago)
"GET /.DS_Store HTTP/1.1"
Hacking
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-10-07 01:02:02
(1 day ago)
Try to access /system/.env
Web App Attack
๐ซ๐ท
Vaction
2026-10-06 19:12:53
(2 days ago)
104.234.32.24 - - [06/Oct/2026:21:12:53 +0200] "GET /api/config.js HTTP/1.1" 404 437 "-" "Mozilla/5. ...
show more
104.234.32.24 - - [06/Oct/2026:21:12:53 +0200] "GET /api/config.js HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:106.0) Gecko/20100101 Firefox/106.0"
show less
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
Kejult
2026-10-06 17:17:10
(2 days ago)
Honeypot Finding: repeated TCP service probing on TCP/80 (HTTP); 11 application-level events across ...
show more
Honeypot Finding: repeated TCP service probing on TCP/80 (HTTP); 11 application-level events across 6 source port(s). Sensor(s): Tanner.
show less
Port Scan
๐ฉ๐ช
initsol
2026-10-06 12:39:31
(2 days ago)
[Tue Oct 06 14:39:30.525603 2026] [authz_core:error] [pid 2877556:tid 2877556] [client 104.234.32.24 ...
show more
[Tue Oct 06 14:39:30.525603 2026] [authz_core:error] [pid 2877556:tid 2877556] [client 104.234.32.24:34399] AH01630: client denied by server configuration: /var/www/__debug__
[Tue Oct 06 14:39:30.682150 2026] [authz_core:error] [pid 2877556:tid 2877556] [client 104.234.32.24:34399] AH01630: client denied by server configuration: /var/www/_profiler
[Tue Oct 06 14:39:30.835608 2026] [authz_core:error] [pid 2877556:tid 2877556] [client 104.234.32.24:34399] AH01630: client denied by server configuration: /var/www/app_dev.php
...
show less
Brute-Force
๐น๐ท
oalver
2026-10-05 12:10:40
(3 days ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /wp-admin/css/ (HTTP 403). First seen: 2026-10-05. Risk score: 30/100.
show less
Web App Attack
๐ช๐ธ
librebit
2026-10-03 00:33:00
(6 days ago)
Brute force
Brute-Force
๐ฎ๐น
Inartis
2026-09-22 11:01:04
(2 weeks ago)
104.234.32.24 - - [22/Sep/2026:12:53:40 +0200] "POST /admin HTTP/1.1" 302 8149 "https://venturatopad ...
show more
104.234.32.24 - - [22/Sep/2026:12:53:40 +0200] "POST /admin HTTP/1.1" 302 8149 "https://venturatopadova.it/wp-admin/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.107 Safari/537.36"
104.234.32.24 - - [22/Sep/2026:12:55:50 +0200] "POST /admin HTTP/1.1" 302 8149 "https://venturatopadova.it/wp-admin/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Edge/91.0.864.59"
104.234.32.24 - - [22/Sep/2026:13:01:02 +0200] "POST /admin HTTP/1.1" 302 8149 "https://venturatopadova.it/wp-admin/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.54 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-21 00:00:00
(2 months ago)
"Security violation, excess traffic against library/education infrastructure"
Brute-Force
๐ซ๐ท
masterguru
2026-07-02 10:22:41
(3 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-135)
show less
Bad Web Bot
๐ฉ๐ช
LRob
2026-05-26 16:00:27
(4 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-04-07 01:34:14
(6 months ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
CA/Canada/-
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-03 22:59:26
(8 months ago)
Auto-ban: >3000 req/min op 2026-02-03
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-03 17:37:16
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 12:37:06.730649 2026] [security2:error] [pid 19755:tid 19755] [client 104.234.32.24:63699] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.57"] [uri "/vendor/.env"] [unique_id "aYIyQnbxvgp2awImVGX01QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-03 11:20:43
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 06:20:17.208965 2026] [security2:error] [pid 28140:tid 28140] [client 104.234.32.24:27241] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.215"] [uri "/src/.env"] [unique_id "aYHZ8c_1Nfuu21MimuLzVAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack