๐ง๐ท
Sipo Chutรฃo
2026-04-29 03:00:01
(4 months ago)
/.env
Hacking
๐ณ๐ฑ
jjnxpct
2026-04-24 03:50:38
(4 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /phpinfo.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-04-23 22:00:27
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-04-22.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
kosada.com
2026-04-23 00:36:10
(4 months ago)
Web vulnerability probing: /.env
Web App Attack
Anonymous
2026-04-22 23:41:00
(4 months ago)
[23/Apr/2026:02:40:58 +0300] 177690125883.760855 125.164.19.226 11134 148.251.76.218 443
[23/Apr/202 ...
show more
[23/Apr/2026:02:40:58 +0300] 177690125883.760855 125.164.19.226 11134 148.251.76.218 443
[23/Apr/2026:02:40:58 +0300] 177690125839.242911 125.164.19.226 18673 148.251.76.218 443
show less
Web App Attack
๐ท๐บ
DZBOT
2026-04-22 23:07:46
(4 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-22 21:47:05
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 17:46:59.000824 2026] [security2:error] [pid 2321595:tid 2321595] [client 125.164.19.226:10468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gh057.io"] [uri "/.env"] [unique_id "aelB09Bhda7U_OmclsBmgQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-22 21:31:40
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 17:31:32.338145 2026] [security2:error] [pid 17900:tid 17900] [client 125.164.19.226:26578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "firstlegend.info"] [uri "/.htaccess"] [unique_id "aek-NGC5x1cy8Skd4Rm35AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-22 21:09:55
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 17:09:49.196504 2026] [security2:error] [pid 3101735:tid 3101735] [client 125.164.19.226:7812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "desertedge.band"] [uri "/.env"] [unique_id "aek5HYkeZOZZmv7UWbCo2wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-22 20:03:43
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 16:03:35.058225 2026] [security2:error] [pid 2579:tid 2579] [client 125.164.19.226:30314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gadgeteer.net"] [uri "/.env"] [unique_id "aekpl5SU-rf0I89E7yjnHgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-22 19:38:54
(4 months ago)
"GET /.env HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-22 19:15:38
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 125.164.19.226 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 15:15:33.117009 2026] [security2:error] [pid 2670970:tid 2670970] [client 125.164.19.226:29708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stocks.nautos-usa.com"] [uri "/.env"] [unique_id "aekeVcvAAqkKYEhfaOucOQAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-04-22 12:27:43
(4 months ago)
Accessed trap at '/.env'
Web App Attack
๐ฉ๐ช
betternews.app
2026-04-22 09:57:46
(4 months ago)
"a web request contained keyword ".env"; Suspicious URL: /.env"
Web Spam
Blog Spam
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-04-22 00:22:21
(4 months ago)
IM360 WAF: Laravel .env file access
Web App Attack