๐ฉ๐ช
Gwyneth Llewelyn
2026-09-23 12:16:23
(5 hours ago)
2026/09/23 13:15:47 [error] 325888#325888: *1577525 access forbidden by rule, client: 136.85.47.248, ...
show more
2026/09/23 13:15:47 [error] 325888#325888: *1577525 access forbidden by rule, client: 136.85.47.248, server: [redacted], request: "GET /autodiscover.xml/.env HTTP/1.1", host: "[redacted]"
2026/09/23 13:16:20 [error] 325888#325888: *1577525 access forbidden by rule, client: 136.85.47.248, server: [redacted], request: "GET /autodiscover.xml/app/.env HTTP/1.1", host: "[redacted]"
2026/09/23 13:16:21 [error] 325888#325888: *1577525 access forbidden by rule, client: 136.85.47.248, server: [redacted], request: "GET /autodiscover.xml/apps/.env HTTP/1.1", host: "[redacted]"
show less
Brute-Force
Web App Attack
๐ต๐ฑ
Budyn
2026-09-21 22:19:31
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: auth.dont-eat-the-pudding.xyz | URI: /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 08:11:06
(2 days ago)
Web application attack detected.
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-21 07:14:15
(2 days ago)
[rdbd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example ...
show more
[rdbd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 136.85.47.248 - - [21/Sep/2026:09:14:10 +0200] "GET /.git/config HTTP/1.1" 404 2142 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-21 06:10:03
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐จ๐ญ
leo1305
2026-09-20 16:49:13
(3 days ago)
CrowdSec detection | scenario: http-sensitive-files
Web App Attack
Exploited Host
๐ฉ๐ช
Hary74656
2026-09-20 16:21:54
(3 days ago)
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3.
[earlier text truncated]
2). Oper ...
show more
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3.
[earlier text truncated]
2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/opt/owasp-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 55)"] [ver "OWASP_CRS/4.29.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "dbl.aschi.at"] [uri "/"] [unique_id "arAIIYDU9KUEEGUNmrG1ggAAARA"]
[Sun Sep 20 18:21:53.919416 2026] [vhost dbl.aschi.at] [security2:error] [pid 307978:tid 140485324969664] [client 136.85.47.248:35822] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/opt/owasp-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 30)"] [ver "OWASP_CRS/4.29.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "dbl.aschi.at"] [uri "/"] [unique_id "arAIIYDU9KUEEGUNmrG1gwAAAQA"]
show less
Web App Attack