๐ฉ๐ช
ramazan
2026-09-16 21:38:40
(5 days ago)
Fail2Ban: nginx-4xx | Failures: 10 | Log: /.git/ /.git/hooks/post-commit.sample /.git/hooks/post-rec ...
show more
Fail2Ban: nginx-4xx | Failures: 10 | Log: /.git/ /.git/hooks/post-commit.sample /.git/hooks/post-receive.sample /.git/info/refs /.git/logs/refs/heads/development
show less
Web App Attack
Hacking
Anonymous
2026-09-16 06:47:14
(5 days ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-09-15 21:08:59
(6 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐จ๐ญ
4server
2026-09-15 21:07:46
(6 days ago)
[TueSep1523:07:41.8635172026][security2:error][pid1982251:tid1982298][client137.184.54.43:0]ModSecur ...
show more
[TueSep1523:07:41.8635172026][security2:error][pid1982251:tid1982298][client137.184.54.43:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"aid-consultancy.com\"][uri\"/.git/config\"][unique_id\"aqmzncoDboIzEtCeuJK4ZgAAAQI\"]
show less
Hacking
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 21:04:28
(6 days ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 137 ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 137.184.54.43 - - [15/Sep/2026:23:04:27 +0200] "GET /.git/config HTTP/1.1" 301 482 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/536.5 (KHTML, like Gecko) Chrome/19.0.1084.9 Safari/536.5"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 21:04:22
(6 days ago)
IP & Port Scan.
SSH
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-15 21:04:03
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:03:59.490843 2026] [security2:error] [pid 12954:tid 12954] [client 137.184.54.43:38608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agrizel.menagri.com"] [uri "/.git/config"] [unique_id "aqmyvw04BTzTNYQHCvrdoQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
iulianh
2026-09-15 20:54:54
(6 days ago)
80,443
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-09-15 20:46:03
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:45:59.938025 2026] [security2:error] [pid 23937:tid 23937] [client 137.184.54.43:40884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "admin.marisetravel.com"] [uri "/.git/config"] [unique_id "aqmuhwO2-C5CI2o5ZG5GOQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:26:42
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:26:35.307717 2026] [security2:error] [pid 24726:tid 24726] [client 137.184.54.43:32822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "act-research.com"] [uri "/.git/config"] [unique_id "aqmp-6MMSvUiplUD8HgEhQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
mnazibo
2026-09-15 20:15:56
(6 days ago)
Date: Sep 15 23:05:48 2026 EAT | Reported IP: 137.184.54.43 mod_security | id: 930130 949110 | US/us ...
show more
Date: Sep 15 23:05:48 2026 EAT | Reported IP: 137.184.54.43 mod_security | id: 930130 949110 | US/usernameab.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5)
show less
SQL Injection
Brute-Force
Bad Web Bot
๐ช๐ธ
loadsoporte
2026-09-15 20:15:16
(6 days ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ฉ๐ช
Kreapptivo
2026-09-15 20:06:32
(6 days ago)
[15/Sep/2026:22:06:28 +0200] Web-Request: "GET /.git/config", User-Agent: "Gaisbot/3.0 ([email protected] ...
show more
[15/Sep/2026:22:06:28 +0200] Web-Request: "GET /.git/config", User-Agent: "Gaisbot/3.0 ([email protected] ; http://gais.cs.ccu.edu.tw/robot.php)"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:05:17
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.54.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:05:12.864245 2026] [security2:error] [pid 28070:tid 28070] [client 137.184.54.43:46938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abs.grabnerconsulting.com"] [uri "/.git/config"] [unique_id "aqmk-Mcu01BNxKXiHzmxywAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 20:02:03
(6 days ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack