๐ณ๐ฑ
Selckie
2026-04-18 18:28:39
(1 month ago)
fail2ban: NGINX unusual impact
Web App Attack
๐ง๐ท
SOC PR
2026-04-07 04:57:57
(1 month ago)
Attack detected: Common web attack.
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-07 04:56:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 00:56:03.494731 2026] [security2:error] [pid 849704:tid 849704] [client 13.83.216.98:3690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.pacificventure.com.hk"] [uri "/.git/config"] [unique_id "adSOY9qlYpvmpXMVqHEsUQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-04-07 04:27:23
(1 month ago)
227 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
octageeks.com
2026-04-07 04:08:24
(1 month ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 03:37:18
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 23:37:12.784771 2026] [security2:error] [pid 957560:tid 957560] [client 13.83.216.98:3907] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "haciendaefrain.com"] [uri "/.git/config"] [unique_id "adR76C8IG60c9zQwKd_SQgAAABA"], referer: https://www.youtube.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-04-07 03:07:59
(1 month ago)
Web vulnerability probing: /@fs/etc/passwd
Web App Attack
๐ฌ๐ง
Axel
2026-04-07 03:05:33
(1 month ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
dklueh79
2026-04-07 03:01:51
(1 month ago)
Probe for vulnerabilities. Path attempted: /.git/config
Web App Attack
๐ฉ๐ช
Blexyel
2026-04-07 02:37:42
(1 month ago)
13.83.216.98 - - [07/Apr/2026:04:37:41 +0200] "GET /.git/config HTTP/1.1" 200 265 "https://outlook.l ...
show more
13.83.216.98 - - [07/Apr/2026:04:37:41 +0200] "GET /.git/config HTTP/1.1" 200 265 "https://outlook.live.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 02:12:01
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 22:11:53.506862 2026] [security2:error] [pid 630260:tid 630260] [client 13.83.216.98:3095] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "7319atwood.com"] [uri "/.git/config"] [unique_id "adRn6SbNCPjW6KcTHd0uPwAAAAw"], referer: https://www.yahoo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-07 01:55:02
(1 month ago)
fail2ban:piguard2:18,19,21
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 01:54:50
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 13.83.216.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 21:54:42.602880 2026] [security2:error] [pid 858948:tid 858948] [client 13.83.216.98:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sistememail.com"] [uri "/.git/config"] [unique_id "adRj4lVPEkL_7TxSTmamyQAAAA8"], referer: https://twitter.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ณ
ThreatBook.io
2026-03-20 23:27:34
(2 months ago)
ThreatBook Intelligence: Scanner,IDC more details on https://threatbook.io/ip/13.83.216.98
SSH
๐ญ๐ฐ
Paschen J Ki
2026-03-20 02:08:09
(2 months ago)
2026-03-20T10:07:39.385913+08:00 rbm-BIDbKZig sshd[3414134]: Failed password for root from 13.83.216 ...
show more
2026-03-20T10:07:39.385913+08:00 rbm-BIDbKZig sshd[3414134]: Failed password for root from 13.83.216.98 port 5120 ssh2
2026-03-20T10:07:49.642392+08:00 rbm-BIDbKZig sshd[3414157]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=13.83.216.98 user=root
2026-03-20T10:07:51.273137+08:00 rbm-BIDbKZig sshd[3414157]: Failed password for root from 13.83.216.98 port 5120 ssh2
2026-03-20T10:08:06.286336+08:00 rbm-BIDbKZig sshd[3414197]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=13.83.216.98 user=root
2026-03-20T10:08:08.584468+08:00 rbm-BIDbKZig sshd[3414197]: Failed password for root from 13.83.216.98 port 5120 ssh2
...
show less
Brute-Force
SSH