๐บ๐ธ
craudiovizai
2026-10-02 18:30:41
(5 hours ago)
Automated honeypot detection. blocked ip against a Next.js application. Paths: /.git/config. Blocked ...
show more
Automated honeypot detection. blocked ip against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Bad Web Bot
๐ฆ๐บ
2000cn.com.au
2026-10-02 07:20:26
(16 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฎ๐ฉ
penjaga BRIN
2026-10-02 06:30:37
(17 hours ago)
Suspicious malicious activity
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-02 05:20:42
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 01:20:38.476968 2026] [security2:error] [pid 18339:tid 18339] [client 137.184.75.14:42206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "richardhellis-sculptor.com"] [uri "/.git/config"] [unique_id "ar8_JmX8yHK4MSRRA95ZrgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 04:22:33
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 00:22:29.131608 2026] [security2:error] [pid 9978:tid 9978] [client 137.184.75.14:57498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "reettaanttila.com"] [uri "/.git/config"] [unique_id "ar8xhS0-dolvCuLc1QZInQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 23:10:03
(1 day ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-01 21:59:30
(1 day ago)
Auto-ban: >3000 req/min op 2026-10-01
Web App Attack
SSH
Hacking
๐ฟ๐ฆ
conure.sh
2026-10-01 20:01:14
(1 day ago)
csagent: score 20.0: secrets grab x2; 2 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 20:01:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 16:01:02.205474 2026] [security2:error] [pid 28776:tid 28776] [client 137.184.75.14:57820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sisix.net"] [uri "/.git/config"] [unique_id "ar67_j_IezDU3n7am6JQRgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-10-01 18:30:56
(1 day ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked a ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-01 18:16:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 14:16:07.281098 2026] [security2:error] [pid 11052:tid 11052] [client 137.184.75.14:33840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sloaviation.com"] [uri "/.git/config"] [unique_id "ar6jZ3M7L7mUaPpDn0-GMAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 16:14:18
(1 day ago)
PSCSERV WPSCAN 137.184.75.14
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 15:47:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 11:47:17.977332 2026] [security2:error] [pid 31883:tid 31883] [client 137.184.75.14:42018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smokeydoesit.com"] [uri "/.git/config"] [unique_id "ar6AhSgMDV4GcEK8uKnmnAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
SkyDancer
2026-10-01 15:39:56
(1 day ago)
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blo ...
show more
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blocked by SkyDancer Ai(web-X).
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-01 14:53:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.75.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:53:31.914816 2026] [security2:error] [pid 3549:tid 3549] [client 137.184.75.14:39462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fundingworkingcapital.com"] [uri "/.git/config"] [unique_id "ar5z6xd6FO4CGqhGZt0kuAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack