๐ฉ๐ช
MBombeck
2026-06-05 04:53:16
(1 hour ago)
Fail2Ban/traefik-botsearch on ops-01.bombeck.io: banned after 5 failures
Web App Attack
๐บ๐ธ
stvnrdg.me
2026-06-05 04:22:50
(2 hours ago)
109.234.161.78 - - [05/Jun/2026:04:22:49 +0000] "GET /wp-config.php HTTP/1.1" 404 393 "-" "Mozilla/5 ...
show more
109.234.161.78 - - [05/Jun/2026:04:22:49 +0000] "GET /wp-config.php HTTP/1.1" 404 393 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:125.0) Gecko/20100101 Firefox/125.0"
...
show less
Hacking
๐ซ๐ท
dynamix
2026-06-05 04:12:40
(2 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
donarev419
2026-06-05 04:01:43
(2 hours ago)
Port scan detected on port 80 (connection without data transfer)
Port Scan
Anonymous
2026-06-05 03:52:04
(2 hours ago)
Reported from Nginx log analysis 6. Log: 109.234.161.78 - - [05/Jun/2026:xx:xx:xx 0200] "GET /.git/ ...
show more
Reported from Nginx log analysis 6. Log: 109.234.161.78 - - [05/Jun/2026:xx:xx:xx 0200] "GET /.git/HEAD HTTP/1.1" xxx xxx "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.4; rv:125.0) Gecko/20100101 Firefox/125.0" "-" "FR France -" "AS50474" "O2switch SAS"
show less
Port Scan
Brute-Force
SSH
๐ซ๐ฎ
Yachiyo Runami
2026-06-05 03:28:45
(3 hours ago)
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 54 | Len: 60B | Win: ...
show more
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 54 | Len: 60B | Win: 29200(1) | rDNS: 109-234-161-78.reverse.odns.fr | F2B/ufw-honeypot@2026-06-05T03:28:44Z
show less
Port Scan
Hacking
Anonymous
2026-06-05 02:47:04
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 109.234.161.78 (FR/France/109-234-161-7 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 109.234.161.78 (FR/France/109-234-161-78.reverse.odns.fr)
show less
SQL Injection
๐บ๐ธ
brantknudson.org
2026-06-05 02:27:26
(4 hours ago)
Request path 'GET /.env.backup HTTP/1.1'
Web App Attack
Hacking
๐ง๐ฌ
Stoyko Stoykov
2026-06-05 01:10:32
(5 hours ago)
109.234.161.78 - - [05/Jun/2026:04:10:31 +0300] "GET /.git/HEAD HTTP/1.1" 301 162 "-" "Mozilla/5.0 ( ...
show more
109.234.161.78 - - [05/Jun/2026:04:10:31 +0300] "GET /.git/HEAD HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ฌ๐ง
andypiper
2026-06-05 01:02:51
(5 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-05 00:26:25
(6 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 109.234.161.78 (FR/France/109-234-1 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 109.234.161.78 (FR/France/109-234-161-78.reverse.odns.fr): 1 in the last 3600 secs
show less
Web App Attack
Anonymous
2026-06-05 00:10:35
(6 hours ago)
SIEM ALERT AUTO REPORT
Email Spam
๐ฉ๐ช
itsolon
2026-06-04 23:30:46
(7 hours ago)
[05/Jun/2026:01:30:45 +0200] 178061584561.885663 109.234.161.78 50340 217.154.7.177 80
[05/Jun/2026: ...
show more
[05/Jun/2026:01:30:45 +0200] 178061584561.885663 109.234.161.78 50340 217.154.7.177 80
[05/Jun/2026:01:30:45 +0200] 178061584588.636294 109.234.161.78 56074 217.154.7.177 80
[05/Jun/2026:01:30:46 +0200] 178061584685.980655 109.234.161.78 44362 217.154.7.177 80
[05/Jun/2026:01:30:46 +0200] 178061584631.265796 109.234.161.78 51866 217.154.7.177 80
[05/Jun/2026:01:30:46 +0200] 178061584644.961344 109.234.161.78 56404 217.154.7.177 80
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
Anonymous
2026-06-04 23:15:02
(7 hours ago)
[Thu Jun 04 16:15:00.944014 2026] [authz_core:error] [pid 1556041] [client 109.234.161.78:35902] AH0 ...
show more
[Thu Jun 04 16:15:00.944014 2026] [authz_core:error] [pid 1556041] [client 109.234.161.78:35902] AH01630: client denied by server configuration: /home/appowner/www/sec/.git
[Thu Jun 04 16:15:01.533985 2026] [authz_core:error] [pid 1556031] [client 109.234.161.78:48956] AH01630: client denied by server configuration: /home/appowner/www/sec/.git
[Thu Jun 04 16:15:01.902854 2026] [authz_core:error] [pid 1549081] [client 109.234.161.78:38288] AH01630: client denied by server configuration: /home/appowner/www/sec/.env
[Thu Jun 04 16:15:02.275373 2026] [authz_core:error] [pid 1550206] [client 109.234.161.78:48910] AH01630: client denied by server configuration: /home/appowner/www/sec/.env.local
[Thu Jun 04 16:15:02.736249 2026] [authz_core:error] [pid 1549038] [client 109.234.161.78:34136] AH01630: client denied by server configuration: /home/appowner/www/sec/.env.production
...
show less
Brute-Force
SSH
๐บ๐ธ
kosada.com
2026-06-04 23:08:21
(7 hours ago)
Web vulnerability probing: /.env.production (bogus vhost/SNI)
Web App Attack