๐บ๐ธ
Mundo Bueno
2026-10-05 08:01:04
(12 minutes ago)
[ISILIA Protection v2.3] Tentative d'accรจs: /@fs/root/.aws/credentials [RATE LIMITED - 1800s quarant ...
show more
[ISILIA Protection v2.3] Tentative d'accรจs: /@fs/root/.aws/credentials [RATE LIMITED - 1800s quarantine] | Pays: US | UA: Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)
show less
Hacking
Web App Attack
๐ซ๐ฎ
JimArchon72
2026-10-05 07:45:01
(28 minutes ago)
2026/10/05 07:40:53 "GET /wp-admin/ HTTP/2.0"
Web App Attack
๐บ๐ธ
WellSpring
2026-10-05 07:01:09
(1 hour ago)
good bot honeypot on freeproduce.org/@fs/root/.env โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-05 06:36:28
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 02:36:21.404088 2026] [security2:error] [pid 3452:tid 3452] [client 136.66.96.255:44098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flinthillsveterans.org"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "asNFZbAAGIt_dZ0BzTAsDgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-05 06:12:53
(2 hours ago)
136.66.96.255 - - [05/Oct/2026:08:12:50 +0200] "GET /g2r1tz0nvu3eq6n2oume HTTP/1.1" 403 124 "-" "Moz ...
show more
136.66.96.255 - - [05/Oct/2026:08:12:50 +0200] "GET /g2r1tz0nvu3eq6n2oume HTTP/1.1" 403 124 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
136.66.96.255 - - [05/Oct/2026:08:12:51 +0200] "GET /z9x8c7v6b5-debug-trigger-fictazm.org HTTP/1.1" 403 124 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
136.66.96.255 - - [05/Oct/2026:08:12:51 +0200] "GET /2ssepst9rimmqvfxxx06 HTTP/1.1" 403 124 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)"
136.66.96.255 - - [05/Oct/2026:08:12:51 +0200] "POST / HTTP/1.1" 403 124 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot"
136.66.96.255 - - [05/Oct/2026:08:12:51 +0200] "POST /login HTTP/1.1" 403 124 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
136.66.96.255 - - [05/Oct/2026:08:12:51 +0200] "GET /wp-json H
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 06:11:18
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 02:11:09.917784 2026] [security2:error] [pid 22562:tid 22562] [client 136.66.96.255:54556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fgrotary.org"] [uri "/.htpasswd"] [unique_id "asM_fdA9sYkvsjw1p-2P7AAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-10-05 06:06:57
(2 hours ago)
Wordlist path sweep | method: GET | path: /lib/terminal-xhr.php, /build/manifest.json, /dist/manifes ...
show more
Wordlist path sweep | method: GET | path: /lib/terminal-xhr.php, /build/manifest.json, /dist/manifest.json (+17 more) | ua: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatibl, Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0, Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/) (+11 more) | 2026-10-05 06:06 UTC
show less
Port Scan
Web App Attack
๐ฉ๐ช
rh24
2026-10-05 05:54:02
(2 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 136.66.96.255 (US/Un ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 136.66.96.255 (US/United States/255.96.66.136.bc.googleusercontent.com): (CF_ENABLE)
show less
Bad Web Bot
๐บ๐ธ
creechy
2026-10-05 05:36:20
(2 hours ago)
136.66.96.255 - - [04/Oct/2026:22:36:16 -0700] "GET /.npmrc HTTP/1.1" 404 758 "-" "Mozilla/5.0 (comp ...
show more
136.66.96.255 - - [04/Oct/2026:22:36:16 -0700] "GET /.npmrc HTTP/1.1" 404 758 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)"
...
show less
Hacking
Bad Web Bot
Anonymous
2026-10-05 05:16:07
(2 hours ago)
Fail2Ban apache-noscript
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-05 03:56:57
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 23:56:49.602709 2026] [security2:error] [pid 6292:tid 6341] [client 136.66.96.255:42988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "epsbudgetcommittee.org"] [uri "/.htpasswd"] [unique_id "asMgAcxgcy5xaPaYrT9gqAAAAY8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
itsolon
2026-10-05 03:56:49
(4 hours ago)
[05/Oct/2026:05:56:48 +0200] 17911726088.821775 136.66.96.255 0 217.154.7.177 443
[05/Oct/2026:05:56 ...
show more
[05/Oct/2026:05:56:48 +0200] 17911726088.821775 136.66.96.255 0 217.154.7.177 443
[05/Oct/2026:05:56:48 +0200] 17911726084.691738 136.66.96.255 0 217.154.7.177 443
[05/Oct/2026:05:56:48 +0200] 179117260866.759792 136.66.96.255 0 217.154.7.177 443
[05/Oct/2026:05:56:49 +0200] 179117260910.176107 136.66.96.255 0 217.154.7.177 443
[05/Oct/2026:05:56:49 +0200] 179117260966.757939 136.66.96.255 0 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 02:59:40
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.96.255 (255.96.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 22:59:32.292096 2026] [security2:error] [pid 11678:tid 11678] [client 136.66.96.255:55634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emeraldhighlands.org"] [uri "/.htpasswd"] [unique_id "asMSlIGZT2Hz1ZPQFD4GmgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-10-05 02:59:09
(5 hours ago)
Multiple WAF Violations
Web App Attack
๐ฌ๐ง
Comberton
2026-10-05 02:50:06
(5 hours ago)
Ban via by F2B interproj-org-access jail
Brute-Force