๐บ๐ธ
Rip
2026-10-11 05:28:46
(12 minutes ago)
Unauthorized bot access is denied by server configuration.
Bad Web Bot
๐จ๐ฆ
Anytech
2026-10-11 04:12:34
(1 hour ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
๐ง๐ท
dominioz
2026-10-11 04:03:26
(1 hour ago)
2026-10-11 04:03:13 GET /.env - - 107.149.8.43 HTTP/1.1 python-requests/2.34.2 - 302 469
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-11 00:26:18
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 20:26:14.535931 2026] [security2:error] [pid 5081:tid 5097] [client 2002:6b95:82b::6b95:82b:59264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "browbrew.metalartgate.com"] [uri "/.env"] [unique_id "asrXpuSobd7CPhW45JLA8gAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 21:06:30
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 107.149.8.43 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 107.149.8.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 17:06:24.378933 2026] [security2:error] [pid 2429:tid 2429] [client 107.149.8.43:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bradleybarefoot.com"] [uri "/.env"] [unique_id "asqo0AU_vIEjZ6SpGeY-owAAAG8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 16:19:52
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 12:19:46.547514 2026] [security2:error] [pid 28653:tid 28653] [client 2002:6b95:82b::6b95:82b:53331] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bodyonabudget.daebakdesign.com"] [uri "/.env"] [unique_id "asplohbC0UhqGmZBY-vmiAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 12:55:29
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 107.149.8.43 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 107.149.8.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 08:55:23.027948 2026] [security2:error] [pid 29435:tid 29435] [client 107.149.8.43:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.nyemdr.com"] [uri "/.env"] [unique_id "aso1u-BkH7PXplU2WKyTZQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
IVski.com
2026-10-10 10:14:09
(19 hours ago)
IVski WAF | Sensitive file probe - looking for exposed .env.js
Hacking
Brute-Force
Web App Attack
๐ญ๐บ
bcsaba
2026-10-10 08:39:44
(21 hours ago)
Probing for .env file:
107.149.8.43 - - [10/Oct/2026:10:39:43 +0200] "GET /.env HTTP/1.1" 403 146 "- ...
show more
Probing for .env file:
107.149.8.43 - - [10/Oct/2026:10:39:43 +0200] "GET /.env HTTP/1.1" 403 146 "-" "python-requests/2.34.2"
show less
Web App Attack
๐ง๐ท
dominioz
2026-10-09 23:14:22
(1 day ago)
2026-10-09 23:14:16 GET /.env - - 107.149.8.43 HTTP/1.1 python-requests/2.34.2 - 301 544
...
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-09 23:01:30
(1 day ago)
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 107.149.8.43 - - [10/Oct/2026:01:01:26 +0200] "GET /.env HTTP/1.1" 301 487 "-" "python-requests/2.34.2"
...
show less
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-10-09 21:15:18
(1 day ago)
Web App Attack
๐ต๐ฑ
Budyn
2026-10-09 21:04:13
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: backup.astropot.space | URI: /.env | UA: python-requests/2.34.2 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 14:09:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 10:09:12.727563 2026] [security2:error] [pid 26934:tid 26934] [client 2002:6b95:82b::6b95:82b:61102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "axiomemail.net"] [uri "/.env"] [unique_id "asj1iOFydMwkSNATwRRX8gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 07:03:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:6b95:82b::6b95:82b (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 03:03:47.893680 2026] [security2:error] [pid 1036:tid 1036] [client 2002:6b95:82b::6b95:82b:59512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.falconpilotcarservice.com"] [uri "/.env"] [unique_id "asiR0z2OmabwFeEZoberZgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack