๐ฉ๐ช
altenglaner
2026-10-08 17:25:43
(21 hours ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐ง๐ท
Peregrine
2026-10-08 03:09:13
(1 day ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 121.135.178.225 162.158.91.158 - - [06/Oct/2026:17:16: ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 121.135.178.225 162.158.91.158 - - [06/Oct/2026:17:16:53 -0300] "GET /.git/HEAD HTTP/1.1" 404 414
show less
Bad Web Bot
Anonymous
2026-10-06 20:49:08
(2 days ago)
Web Server Exposed Git Repository Information Disclosure.
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-06 20:21:48
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 16:21:41.451562 2026] [security2:error] [pid 31771:tid 31771] [client 121.135.178.225:52310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "homecheckinmaine.com"] [uri "/.git/HEAD"] [unique_id "asVYVT6GNFORCibsQKCvwgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-06 20:21:36
(2 days ago)
[ssd5.kdns.gr] httpd-config-scan: sites=www.mail.homeburger.gr; logs=/var/log/httpd/domains/homeburg ...
show more
[ssd5.kdns.gr] httpd-config-scan: sites=www.mail.homeburger.gr; logs=/var/log/httpd/domains/homeburger.gr.log; samples=/.git/HEAD
show less
Hacking
Web App Attack
๐ง๐ท
Peregrine
2026-10-06 20:17:02
(2 days ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 121.135.178.225 162.158.91.158 - - [06/Oct/2026:17:16: ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 121.135.178.225 162.158.91.158 - - [06/Oct/2026:17:16:53 -0300] "GET /.git/HEAD HTTP/1.1" 404 414
show less
Bad Web Bot
๐ณ๐ฑ
Alt255
2026-10-06 20:13:00
(2 days ago)
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 121 ...
show more
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 121.135.178.225 - - \[06/Oct/2026:22:12:46 +0200\] "GET /.git/HEAD HTTP/1.1" 301 592 "-" "Mozilla/5.0 \(X11\; Ubuntu\; Linux x86_64\; rv:88.0\) Gecko/20100101 Firefox/88.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 19:51:19
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 15:51:11.765121 2026] [security2:error] [pid 12455:tid 12455] [client 121.135.178.225:38130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "homerbiz.com"] [uri "/.git/HEAD"] [unique_id "asVRL0hP0_N9-YVo5HDZrAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 17:53:46
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 13:53:40.312447 2026] [security2:error] [pid 31500:tid 31500] [client 121.135.178.225:39468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hodlmoser.com"] [uri "/.git/HEAD"] [unique_id "asU1pFFL7jeQ5-Ibu7f1xgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 11:20:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 07:20:48.237055 2026] [security2:error] [pid 1581:tid 1581] [client 121.135.178.225:33868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hinelaw.com"] [uri "/.git/HEAD"] [unique_id "asTZkMVli3ghEc3-_kPnrQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-10-06 11:18:34
(3 days ago)
Login credentials theft attempt
Hacking
๐ณ๐ฑ
Alt255
2026-10-06 10:49:56
(3 days ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 121.135.178.225 - - [06/Oct/2026:12:49:46 +0200] "GET /.git/HEAD HTTP/1.1" 403 519 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 10:13:55
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 06:13:47.466344 2026] [security2:error] [pid 1211:tid 1211] [client 121.135.178.225:56998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heron-ent.com"] [uri "/.git/HEAD"] [unique_id "asTJ2wwH3DEnLElC6iR5OQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 09:47:22
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 05:47:18.629359 2026] [security2:error] [pid 30869:tid 30894] [client 121.135.178.225:41628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heworeblack.com"] [uri "/.git/HEAD"] [unique_id "asTDpij3Ulph1QLBC9kyRQAAAVQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 08:38:08
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 121.135.178.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 04:38:02.237185 2026] [security2:error] [pid 11010:tid 11010] [client 121.135.178.225:47446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "henrietteg.com"] [uri "/.git/HEAD"] [unique_id "asSzah346iH1z2ovHxnFQQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack