Anonymous
2026-08-23 19:45:57
(10 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 104.28.196.54 (FR/France/-)
SQL Injection
๐ต๐ฑ
Budyn
2026-08-23 13:16:03
(17 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: jira.sweetpuddingtrap.top | URI: /.env | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-08-23 08:13:17
(22 hours ago)
(y3) Failed access -byebye- from 104.28.196.54 (FR/France/-): (CF_ENABLE)
Hacking
๐ต๐ฑ
Budyn
2026-08-23 03:40:01
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: beta.dont-eat-the-pudding.online | URI: /wp-admin/ | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-22 18:19:14
(1 day ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 104.28.196.54 (FR/France/-): 1 in the la ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 104.28.196.54 (FR/France/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 104.28.196.54 - - [22/Aug/2026:20:19:09 +0200] "HEAD /secrets.json HTTP/2.0" 429 0 "-" "-" "104.28.196.54" host=www.italpmiabruzzo.it
show less
Port Scan
๐ต๐ฑ
Budyn
2026-08-22 14:28:50
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: status.goblinpot.online | URI: /backup.sql | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 02:10:47
(2 days ago)
Automated web probe/scanner blocked at the edge (WorldTree fleet). Signature: probe_path. Example re ...
show more
Automated web probe/scanner blocked at the edge (WorldTree fleet). Signature: probe_path. Example request: /.env.development.local on retro-recipe.com
show less
Web App Attack
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-08-21 19:34:27
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Savvii
2026-08-21 17:31:06
(2 days ago)
20 attempts against mh-misbehave-ban on frost
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-21 12:36:30
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: metrics.astropot.store | URI: /.env | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ท๐ด
clauss
2026-08-21 06:26:34
(2 days ago)
104.28.196.54 - - [21/Aug/2026:09:26:33 +0300] "GET /config.json HTTP/2.0" 404 10363 "-" "-"
104.28. ...
show more
104.28.196.54 - - [21/Aug/2026:09:26:33 +0300] "GET /config.json HTTP/2.0" 404 10363 "-" "-"
104.28.196.54 - - [21/Aug/2026:09:26:34 +0300] "GET /.continue/config.json HTTP/2.0" 404 10336 "-" "-"
...
show less
Web App Attack
๐จ๐ญ
blinx
2026-08-21 06:16:16
(3 days ago)
Suspicious activity detected by Modsecurity
Web Spam
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-21 05:47:46
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: backup.dont-eat-the-pudding.online | URI: /config.php.bak | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
macrob
2026-08-20 11:51:41
(3 days ago)
2026/08/20 11:51:39 [error] 1272794#1272794: *500495455 access forbidden by rule, client: 104.28.196 ...
show more
2026/08/20 11:51:39 [error] 1272794#1272794: *500495455 access forbidden by rule, client: 104.28.196.54, server: binixo.ro, request: "HEAD /.env HTTP/2.0", host: "binixo.ro"
2026/08/20 11:51:39 [error] 1272794#1272794: *500495455 access forbidden by rule, client: 104.28.196.54, server: binixo.ro, request: "HEAD /.env.production HTTP/2.0", host: "binixo.ro"
2026/08/20 11:51:39 [error] 1272794#1272794: *500495455 access forbidden by rule, client: 104.28.196.54, server: binixo.ro, request: "HEAD /.env.backup HTTP/2.0", host: "binixo.ro"
...
show less
Web App Attack
๐ต๐ฑ
Budyn
2026-08-20 11:33:13
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: auth.definitelynotahoneypot.xyz | URI: /config.php.bak | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack