๐ฉ๐ช
bazter.pro
2026-08-31 06:10:55
(2 hours ago)
Fail2Ban: apache-ratelimit - 20 failures
Port Scan
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 05:30:23
(2 hours ago)
2026/08/31 02:30:22 [error] 1105260#1105260: *149327 rewrite or internal redirection cycle while int ...
show more
2026/08/31 02:30:22 [error] 1105260#1105260: *149327 rewrite or internal redirection cycle while internally redirecting to "/error/403.html", client: 13.213.68.167, server: vebobinas.com, request: "GET /admin/.env HTTP/2.0", host: "vebobinas.com"
2026/08/31 02:30:22 [error] 1105260#1105260: *149327 rewrite or internal redirection cycle while internally redirecting to "/error/403.html", client: 13.213.68.167, server: vebobinas.com, request: "GET /backend/.env HTTP/2.0", host: "vebobinas.com"
2026/08/31 02:30:22 [error] 1105260#1105260: *149327 rewrite or internal redirection cycle while internally redirecting to "/error/403.html", client: 13.213.68.167, server: vebobinas.com, request: "GET /api/.env HTTP/2.0", host: "vebobinas.com"
...
show less
Port Scan
Anonymous
2026-08-31 05:29:39
(2 hours ago)
Aggressive web scan
Web App Attack
๐ฑ๐ป
garmtech.com
2026-08-31 03:48:48
(4 hours ago)
Attempted access to sensitive endpoint (/login) detected. Automated scan or unauthorized probing.
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-31 01:50:01
(6 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-08-31 01:40:03
(6 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ช๐ธ
el-brujo
2026-08-31 00:35:19
(7 hours ago)
13.213.68.167 - - [31/Aug/2026:02:35:19 +0200] "POST /graphql HTTP/2.0" 404 15964 "https://elhacker. ...
show more
13.213.68.167 - - [31/Aug/2026:02:35:19 +0200] "POST /graphql HTTP/2.0" 404 15964 "https://elhacker.net" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
13.213.68.167 - - [31/Aug/2026:02:35:19 +0200] "GET /.vite/manifest.json HTTP/2.0" 404 15964 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
13.213.68.167 - - [31/Aug/2026:02:35:19 +0200] "GET /build/manifest.json HTTP/2.0" 404 15964 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
...
show less
DDoS Attack
Hacking
๐ณ๐ฑ
e.fierstra
2026-08-30 23:27:14
(8 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
bancix
2026-08-30 23:01:11
(9 hours ago)
Heimdall NIDS: Automatic ban triggered. Reason: RST_LIMIT_EXCEEDED (5/5)
Port Scan
๐ฉ๐ช
london2038.com
2026-08-30 22:04:43
(10 hours ago)
Probing for exploits
13.213.68.167 - - [31/Aug/2026:00:04:39 +0200] "GET /.aws/credentials HTTP/2.0" ...
show more
Probing for exploits
13.213.68.167 - - [31/Aug/2026:00:04:39 +0200] "GET /.aws/credentials HTTP/2.0" 422 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36"
13.213.68.167 - - [31/Aug/2026:00:04:39 +0200] "GET /.git/config HTTP/2.0" 422 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
๐ฏ๐ต
ttttomomi
2026-08-30 21:35:05
(10 hours ago)
Repeated probing for credential and configuration files, and for known webshell and remote-code-exec ...
show more
Repeated probing for credential and configuration files, and for known webshell and remote-code-execution endpoints, on our web server. Every request was refused with a 4xx status; none returned content. Paths probed: /.github/.env, /.docker/config.json, /.npmrc. This request bypassed Cloudflare and connected to our origin directly, while also sending a forged CF-Connecting-IP header claiming to be 192.168.53.138, 192.168.4.248 -- an apparent attempt to frame a different IP.
show less
Web App Attack
๐ง๐ช
voormedia
2026-08-30 21:29:53
(10 hours ago)
Accessed trap at '/.git/config'
Web App Attack
๐ฎ๐ฉ
origrata
2026-08-30 20:06:22
(12 hours ago)
[OGWAF] bad_reputation attack blocked | severity: high | POST /api/graphql | UA: Mozilla/5.0 (Linux; ...
show more
[OGWAF] bad_reputation attack blocked | severity: high | POST /api/graphql | UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Mobile Sa
show less
Web App Attack
๐ซ๐ท
Baking333
2026-08-30 18:17:41
(14 hours ago)
[redacted] 13.213.68.167 - - [30/Aug/2026:19:17:40 +0100] "GET /resources/%2e%2e%2f%2e%2e%2f%2e%2e%2 ...
show more
[redacted] 13.213.68.167 - - [30/Aug/2026:19:17:40 +0100] "GET /resources/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%[redacted] HTTP/2.0" 404 354 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Mobile Safari/537.36" [redacted] 13.213.68.167 - - [30/Aug/2026:19:17:40 +0100] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%[redacted] HTTP/2.0" 404 309 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Mobile Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-08-30 16:43:49
(15 hours ago)
[redacted] 13.213.68.167 - - [30/Aug/2026:17:43:48 +0100] "GET /[redacted] HTTP/1.1" 200 169 0/14750 ...
show more
[redacted] 13.213.68.167 - - [30/Aug/2026:17:43:48 +0100] "GET /[redacted] HTTP/1.1" 200 169 0/14750 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36" [redacted] 13.213.68.167 - - [30/Aug/2026:17:43:48 +0100] "GET /[redacted] HTTP/1.1" 200 169 0/12545 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack