Anonymous
2026-06-18 12:19:11
(4 days ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
MPL
2026-06-18 09:47:16
(4 days ago)
tcp/8084
Port Scan
๐ต๐ฑ
sefinek.net
2026-06-18 09:42:05
(4 days ago)
Blocked by UFW on PL02 [10000/tcp] | SPT: 61013 | TTL: 236 | LEN: 44 | TOS: 0x00 โข Reported by: gith ...
show more
Blocked by UFW on PL02 [10000/tcp] | SPT: 61013 | TTL: 236 | LEN: 44 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฉ๐ช
anycast_ac
2026-06-18 09:24:04
(4 days ago)
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/8080 (http).
Commands captured: ...
show more
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/8080 (http).
Commands captured:
$ GET / HTTP/1.1
show less
DDoS Attack
IoT Targeted
Brute-Force
๐ฉ๐ช
anycast_ac
2026-06-18 09:06:36
(4 days ago)
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/8080 (http).
Commands captured: ...
show more
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/8080 (http).
Commands captured:
$ GET /favicon.ico HTTP/1.1
show less
DDoS Attack
IoT Targeted
Brute-Force
๐ง๐ช
cmbplf
2025-06-28 13:31:22
(11 months ago)
107 requests with url.path *.env
Brute-Force
Bad Web Bot
๐ฌ๐ง
Apache
2025-06-27 20:50:22
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (US/United States/-): 5 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (US/United States/-): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-27 08:01:09
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 27 04:01:02.891683 2025] [security2:error] [pid 2197397:tid 2197397] [client 134.199.220.235:62573] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "comunicacion.com"] [uri "/.env"] [unique_id "aF5PvsRobHmBNKUoA4TNnQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
S.O.B.A. Dev.
2025-06-26 02:54:14
(11 months ago)
Threat Blocked by BeeHive from (ASN:14061) (Network:DIGITALOCEAN-ASN) (Host:soba.dev) (Method:GET) ( ...
show more
Threat Blocked by BeeHive from (ASN:14061) (Network:DIGITALOCEAN-ASN) (Host:soba.dev) (Method:GET) (Protocol:HTTP/1.1) (Timestamp:2025-06-26T02:54:14Z)
show less
Web Spam
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-26 02:52:58
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 25 22:52:51.260676 2025] [security2:error] [pid 819893:tid 819893] [client 134.199.220.235:53830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigkevsperformance.com"] [uri "/.env"] [unique_id "aFy2A5gJZNEDRQ1UOBniqwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
VXG-NET
2025-06-26 02:29:37
(11 months ago)
port=80, indicator_type=info-leak
Hacking
๐บ๐ธ
TPI-Abuse
2025-06-26 01:49:51
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 25 21:49:46.011776 2025] [security2:error] [pid 1223537:tid 1223537] [client 134.199.220.235:56560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "talentstar.com"] [uri "/.env"] [unique_id "aFynOtfRB4CdPK2Et6nkEgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
teamsecure
2025-06-26 01:09:16
(11 months ago)
Banned for trying to access env
Web App Attack
๐ซ๐ท
dynamix
2025-06-25 21:01:10
(11 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-24 07:32:30
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.199.220.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 24 03:32:24.083612 2025] [security2:error] [pid 2008910:tid 2008910] [client 134.199.220.235:53380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.manvsfoodlocations.com"] [uri "/.env"] [unique_id "aFpUiPE89wsqisIVLNSmwQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack