Anonymous
2026-10-01 06:51:46
(4 days ago)
Web Attack Next.js Authorization Bypass Vulnerability
Web App Attack
๐ฉ๐ช
macrob
2026-10-01 06:16:17
(4 days ago)
2026/10/01 06:16:15 [error] 1578993#1578993: *3720622 access forbidden by rule, client: 136.110.48.2 ...
show more
2026/10/01 06:16:15 [error] 1578993#1578993: *3720622 access forbidden by rule, client: 136.110.48.207, server: fn.binixo.es, request: "GET /.vite/manifest.json HTTP/2.0", host: "shop.wellbin.org"
2026/10/01 06:16:15 [error] 1578993#1578993: *3720627 access forbidden by rule, client: 136.110.48.207, server: fn.binixo.es, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "shop.wellbin.org"
2026/10/01 06:16:16 [error] 1578992#1578992: *3720637 access forbidden by rule, client: 136.110.48.207, server: fn.binixo.es, request: "GET /api/.env/public/.env HTTP/2.0", host: "shop.wellbin.org"
...
show less
Web App Attack
๐ฉ๐ช
findlab
2026-10-01 02:25:02
(4 days ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
Anonymous
2026-09-30 23:32:17
(4 days ago)
136.110.48.207 - - [01/Oct/2026:01:32:02 +0200] "GET /wp-config.php.old HTTP/2.0" 429 162 "-" "Mozil ...
show more
136.110.48.207 - - [01/Oct/2026:01:32:02 +0200] "GET /wp-config.php.old HTTP/2.0" 429 162 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)" "-" "X"
136.110.48.207 - - [01/Oct/2026:01:32:02 +0200] "GET /config/.env.php HTTP/2.0" 429 162 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)" "-" "X"
136.110.48.207 - - [01/Oct/2026:01:32:02 +0200] "GET /wp-config.php.bak HTTP/2.0" 429 162 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)" "-" "X"
136.110.48.207 - - [01/Oct/2026:01:32:02 +0200] "GET /configuration.php.bak HTTP/2.0" 429 162 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)" "-" "X"
136.110.48.207 - - [01/Oct/2026:01:32:02 +0200] "GET /.env.php.bak HTTP/2.0" 429 162 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)" "-" "X"
136.110.48.207 - - [01/Oct/2026:01:32:02 +0200] "GET /config.php.bak HTTP/2.0" 429 162 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)" "-" "X"
show less
Brute-Force
๐ฉ๐ช
Gwyneth Llewelyn
2026-09-30 22:50:04
(4 days ago)
2026/09/30 23:50:02 [error] 3532288#3532288: *1720196 access forbidden by rule, client: 136.110.48.2 ...
show more
2026/09/30 23:50:02 [error] 3532288#3532288: *1720196 access forbidden by rule, client: 136.110.48.207, server: simetria.org, request: "GET /admin/.env HTTP/2.0", host: "simetria.org", referrer: "https://www.simetria.org/admin%2F.env"
2026/09/30 23:50:02 [error] 3532286#3532286: *1720201 access forbidden by rule, client: 136.110.48.207, server: simetria.org, request: "GET /settings/.env HTTP/2.0", host: "simetria.org", referrer: "https://www.simetria.org/settings%2F.env"
2026/09/30 23:50:02 [error] 3532286#3532286: *1720202 access forbidden by rule, client: 136.110.48.207, server: simetria.org, request: "GET /api/.env HTTP/2.0", host: "simetria.org", referrer: "https://www.simetria.org/api%2F.env"
show less
Brute-Force
Web App Attack
Anonymous
2026-09-30 22:39:31
(4 days ago)
Aggressive web scan
Web App Attack
๐ง๐ท
radardatelecom
2026-09-30 22:26:02
(4 days ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-30 22:16:24
(4 days ago)
Brute-Force
Web App Attack
Anonymous
2026-09-30 22:09:24
(4 days ago)
Logfile match
Web App Attack
๐ง๐ช
cmbplf
2026-09-30 22:07:36
(4 days ago)
155 requests with url.path */@fs/*
Brute-Force
Bad Web Bot
๐บ๐ธ
WellSpring
2026-09-30 21:20:49
(4 days ago)
env leak on covenantcaptcha.org/src/.env โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
๐ฏ๐ต
bokumin.org
2026-09-30 20:59:20
(4 days ago)
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/"] [id "949110"] [msg " ...
show more
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"]
show less
Web App Attack
๐ณ๐ฑ
melroy89
2026-09-30 20:50:49
(4 days ago)
136.110.48.207 - - [30/Sep/2026:22:50:28 +0200] "GET /assets/manifest.json HTTP/2.0" 403 64 "-" "Mo ...
show more
136.110.48.207 - - [30/Sep/2026:22:50:28 +0200] "GET /assets/manifest.json HTTP/2.0" 403 64 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "chat.melroy.org" 0.001
136.110.48.207 - - [30/Sep/2026:22:50:29 +0200] "POST / HTTP/2.0" 403 93 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36" "chat.melroy.org" 0.000
136.110.48.207 - - [30/Sep/2026:22:50:29 +0200] "GET /hp76gavigrxyzs0tcy6i HTTP/2.0" 403 93 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )" "chat.melroy.org" 0.000
136.110.48.207 - - [30/Sep/2026:22:50:29 +0200] "GET /o6yqwul0p9gmx5vkxkyx HTTP/2.0" 403 93 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )" "chat.melroy.org" 0.001
136.110.48.207 - - [30/Sep/2026:22:50:29 +0200] "POST /graphql HTTP/2.0" 403 64 "https://chat.melroy.or
...
show less
Web App Attack
Anonymous
2026-09-30 20:45:22
(4 days ago)
Fail2Ban apache-noscript
Bad Web Bot
๐บ๐ธ
kosada.com
2026-09-30 20:08:03
(4 days ago)
Repeated requests for suspicious nonexistent URLs, for example: /config/env/aws_credentials.env (HTT ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /config/env/aws_credentials.env (HTTP/2.0 port 443, user agent: "CCBot/2.0 (https://commoncrawl.org/faq/)")
show less
Web App Attack