๐บ๐ธ
gu-alvareza
2026-06-10 07:05:42
(4 days ago)
Spring.Boot.Actuator.Unauthorized.Access
Brute-Force
๐บ๐ธ
RAP
2026-06-09 21:13:18
(4 days ago)
2026-06-09 21:13:18 UTC Unauthorized activity to TCP port 8080. Web App
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 20:34:25
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 135.119.237.73 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 135.119.237.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 16:34:21.700668 2026] [security2:error] [pid 15709:tid 15715] [client 135.119.237.73:38335] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.135"] [uri "/.git/HEAD"] [unique_id "aih4zVUUhuveyqWi7BJWMAAAAQM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐พ
armandosaucedo.me
2026-06-09 20:11:26
(4 days ago)
Threat Intelligence via ARMTI, Web Attack: POST /___proxy_subdomain_whm/login/?login_only=1
Web App Attack
Anonymous
2026-06-09 19:51:11
(4 days ago)
135.119.237.73 - - [09/Jun/2026:19:51:06 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 ( ...
show more
135.119.237.73 - - [09/Jun/2026:19:51:06 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36" "-"
135.119.237.73 - - [09/Jun/2026:19:51:07 +0000] "GET /.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Linux; Android 14; Pixel 8) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Mobile Safari/537.36" "-"
135.119.237.73 - - [09/Jun/2026:19:51:09 +0000] "GET /.env.local HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36" "-"
135.119.237.73 - - [09/Jun/2026:19:51:10 +0000] "GET /.env.production HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36" "-"
135.119.237.73 - - [09/Jun/2026:19:51:11 +0000] "GET /.env.backup HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.4; rv:125.0) Gecko/20100101 Firefox
...
show less
Port Scan
Brute-Force
Anonymous
2026-06-09 19:10:41
(4 days ago)
135.119.237.73 - - [09/Jun/2026:21:10:14 +0200] "GET /.git/config HTTP/1.1" 404 181 "-" "Mozilla/5.0 ...
show more
135.119.237.73 - - [09/Jun/2026:21:10:14 +0200] "GET /.git/config HTTP/1.1" 404 181 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
135.119.237.73 - - [09/Jun/2026:21:10:38 +0200] "GET /backup.sql HTTP/1.1" 404 118 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:125.0) Gecko/20100101 Firefox/125.0"
135.119.237.73 - - [09/Jun/2026:21:10:40 +0200] "GET /dump.sql HTTP/1.1" 404 118 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.4; rv:125.0) Gecko/20100101 Firefox/125.0"
show less
Web App Attack
๐ฌ๐ง
PeravixGroup
2026-06-09 18:35:01
(4 days ago)
Imunify360 WAF block (graylisted)
Web App Attack
๐ซ๐ฎ
6kilowatti
2026-06-09 18:07:37
(4 days ago)
2026-06-09T21:07:36.732038+03:00 6kw kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:16:3e:b6:e7:09:78:9a:18 ...
show more
2026-06-09T21:07:36.732038+03:00 6kw kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:16:3e:b6:e7:09:78:9a:18:bd:57:7e:08:00 SRC=135.119.237.73 DST=5.61.88.83 LEN=60 TOS=0x00 PREC=0x00 TTL=48 ID=35800 DF PROTO=TCP SPT=37260 DPT=2087 WINDOW=64240 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-09 17:29:12
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 135.119.237.73 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 135.119.237.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 13:29:06.429614 2026] [security2:error] [pid 23276:tid 23276] [client 135.119.237.73:38537] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.184"] [uri "/.git/config"] [unique_id "aihNYmgSaUfA68zsiF5pkQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-06-09 17:08:19
(4 days ago)
tcp/multiple (8 or more attempts)
Port Scan
๐ฉ๐ช
fleckenbase
2026-06-09 16:48:17
(4 days ago)
apache-noscript
...
Brute-Force
Web App Attack
๐ณ๐ฑ
DrLex0
2026-06-09 16:35:43
(4 days ago)
Poking for git configs and env files
135.119.237.73 80 - [09/Jun/2026:16:35:42 +0000] "GET /.git/co ...
show more
Poking for git configs and env files
135.119.237.73 80 - [09/Jun/2026:16:35:42 +0000] "GET /.git/config HTTP/1.1" 404 2402 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:125.0) Gecko/20100101 Firefox/125.0"
135.119.237.73 80 - [09/Jun/2026:16:35:42 +0000] "GET /.env HTTP/1.1" 404 2402 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
135.119.237.73 80 - [09/Jun/2026:16:35:43 +0000] "GET /.env.local HTTP/1.1" 404 2402 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Yosi
2026-06-09 16:23:27
(4 days ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
Anonymous
2026-06-09 16:14:14
(4 days ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host