๐ฎ๐ณ
evicky2002
2026-09-21 00:02:56
(1 day ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐บ๐ธ
agaesteves
2026-09-20 23:31:24
(1 day ago)
[SISHIPISMO 360] TipoAtaque.PATH_PROBE | Acesso a path suspeito: /.git/config | Paths: /.git/config ...
show more
[SISHIPISMO 360] TipoAtaque.PATH_PROBE | Acesso a path suspeito: /.git/config | Paths: /.git/config | UA:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 23:10:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:10:00.980693 2026] [security2:error] [pid 22176:tid 22176] [client 136.70.178.14:55886] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hijamadirectory.com"] [uri "/.git/config"] [unique_id "arBnyKbDtF_dVb1rVXOLHwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-09-20 22:56:59
(1 day ago)
Login credentials theft attempt
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-09-20 22:01:35
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-20
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 21:35:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:35:32.446994 2026] [security2:error] [pid 26070:tid 26070] [client 136.70.178.14:37230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.henrietteg.com"] [uri "/.git/config"] [unique_id "arBRpMNYlUXQGs92z0P7DgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 21:13:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:13:23.606581 2026] [security2:error] [pid 12800:tid 12800] [client 136.70.178.14:46340] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.help.gmacguffin.com"] [uri "/.git/config"] [unique_id "arBMc5jAnMPS230U4FzR6gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-09-20 20:44:25
(1 day ago)
Unauthorized access to webpage admin
Web App Attack
๐ฉ๐ช
rh24
2026-09-20 20:42:10
(1 day ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 136.70.178.14 (US/United States/14.178.70 ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 136.70.178.14 (US/United States/14.178.70.136.bc.googleusercontent.com)
show less
Hacking
Anonymous
2026-09-20 20:30:03
(1 day ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-20 20:08:44
(1 day ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 19:31:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 15:30:59.334351 2026] [security2:error] [pid 14741:tid 14741] [client 136.70.178.14:56446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.matterofbritain.com"] [uri "/.git/config"] [unique_id "arA0c3YeTRvdY71iExpbkgAAADs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-20 19:20:06
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 19:15:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.178.14 (14.178.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 15:15:28.423644 2026] [security2:error] [pid 13371:tid 13371] [client 136.70.178.14:35590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mathewyoung.com"] [uri "/.git/config"] [unique_id "arAw0C86x7xDvMzucd_G9gAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-20 19:05:05
(1 day ago)
Abuse Detected (32)
Brute-Force
Web App Attack