๐ฌ๐ง
openstrike.co.uk
2026-09-30 05:14:39
(1 hour ago)
13 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐บ๐ธ
kosada.com
2026-09-29 23:11:39
(7 hours ago)
Repeated requests for suspicious nonexistent URLs, for example: /.git/config (HTTP/1.1 port 443, use ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /.git/config (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36")
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-29 22:00:52
(8 hours ago)
Auto-ban: >3000 req/min op 2026-09-29
Web App Attack
SSH
Hacking
๐บ๐ธ
hyena
2026-09-29 21:53:32
(8 hours ago)
Repeated mod_security events.
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-29 20:29:09
(10 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2026-09-29 16:28:06
(14 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 14:43:02
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 10:42:57.492583 2026] [security2:error] [pid 7675:tid 7675] [client 134.209.218.165:33384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "madisonworkshopwest.com"] [uri "/.git/config"] [unique_id "arvOcRJ9BnsAvD3gEo0ndwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Jochen Pretli
2026-09-29 13:41:15
(16 hours ago)
connection to honeypot
Email Spam
Port Scan
๐ง๐ช
voormedia
2026-09-29 12:47:34
(17 hours ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 12:19:46
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 08:19:40.804771 2026] [security2:error] [pid 4083:tid 4083] [client 134.209.218.165:52182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "palmerattaway.com"] [uri "/.git/config"] [unique_id "arus3Gk1C3qDeFZZ4Pmz2AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Roper123
2026-09-29 12:01:45
(18 hours ago)
Web exploits
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 11:58:34
(18 hours ago)
(mod_security) mod_security (id:949110) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:949110) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 07:58:27.037979 2026] [security2:error] [pid 12300:tid 12300] [client 134.209.218.165:60772] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "leseberg.com"] [uri "/.git/config"] [unique_id "arun438_BRlEiTMD2eVHawAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 11:40:12
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 134.209.218.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 07:40:05.383991 2026] [security2:error] [pid 10381:tid 10381] [client 134.209.218.165:33828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mnice.help"] [uri "/.git/config"] [unique_id "arujldpWIUcnayo7KMJcmwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-29 11:29:52
(19 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
Klompenzijncool
2026-09-29 10:55:36
(19 hours ago)
Web scanning/probing blocked by Fail2Ban.
Port Scan
Bad Web Bot