🇳🇱
e.fierstra
2026-09-04 22:56:24
(7 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-04 22:55:01
(7 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-04 22:01:21
(8 hours ago)
Auto-ban: >3000 req/min op 2026-09-04
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-04 21:49:16
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:49:08.535827 2026] [security2:error] [pid 29797:tid 29797] [client 136.66.240.53:47328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kengarysp.com"] [uri "/api/.git/config"] [unique_id "aps81GtXlwblXvmUiAgSowAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:27:50
(8 hours ago)
(mod_security) mod_security (id:949110) triggered by 136.66.240.53 (53.240.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 136.66.240.53 (53.240.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:27:43.019348 2026] [security2:error] [pid 18916:tid 18916] [client 136.66.240.53:58398] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "mail.manavamooreabookings.com"] [uri "/app/.git/config"] [unique_id "aps3z_-nECIsqD7XvMrY8QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 21:27:47
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇨🇭
4server
2026-09-04 21:06:53
(9 hours ago)
[FriSep0423:06:50.6134142026][security2:error][pid2271705:tid2271819][client136.66.240.53:0]ModSecur ...
show more
[FriSep0423:06:50.6134142026][security2:error][pid2271705:tid2271819][client136.66.240.53:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"mail.giardinonoleggioticino.ch\"][uri\"/wordpress/.git/config\"][unique_id\"apsy6mX0fGEh9DqAw-TKsQAAABQ\"]
show less
Hacking
Web App Attack
🇳🇱
Savvii
2026-09-04 20:02:55
(10 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
🇹🇭
thaizone.com
2026-09-04 19:01:33
(11 hours ago)
Hacking attempts against websites (D1) #1
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 16:03:48
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 12:03:42.919794 2026] [security2:error] [pid 5642:tid 5642] [client 136.66.240.53:36934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nightowlprinting.com"] [uri "/.git/config"] [unique_id "aprr3rh71q5urA7wtGp26wAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
kkw
2026-09-04 12:09:41
(18 hours ago)
[REDACTED] 136.66.240.53 - - [04/Sep/2026:14:09:40 +0200] "GET /app/.git/config HTTP/1.1" 404 4617 " ...
show more
[REDACTED] 136.66.240.53 - - [04/Sep/2026:14:09:40 +0200] "GET /app/.git/config HTTP/1.1" 404 4617 "-" "crusader-worker/1.0"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 07:26:32
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:26:25.921059 2026] [security2:error] [pid 1183:tid 1183] [client 136.66.240.53:46658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.tech-servusa.com"] [uri "/htdocs/.git/config"] [unique_id "appyobeCk3RtPMw2-ubENQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 05:35:17
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
🇺🇸
TPI-Abuse
2026-09-04 05:32:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:32:48.945626 2026] [security2:error] [pid 10574:tid 10574] [client 136.66.240.53:34648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paulsingdahlsen.com"] [uri "/site/.git/config"] [unique_id "appYAP5zqj_lCaPXFvOqegAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 03:37:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.240.53 (53.240.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 23:37:43.222082 2026] [security2:error] [pid 24390:tid 24390] [client 136.66.240.53:40610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.belize-boat-registration.com"] [uri "/var/www/.git/config"] [unique_id "apo9B84Uloh58x9xj7vBJwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack