๐จ๐ฆ
polycoda
2025-01-22 17:19:56
(1 year ago)
โฑ๏ธ Excessive scraping in short period of time
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-22 00:36:06
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in ...
show more
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 21 19:36:00.570021 2025] [security2:error] [pid 11320:tid 11320] [client 139.99.160.195:52339] [client 139.99.160.195] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||twilighthackers.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "twilighthackers.com"] [uri "/statsteam.php"] [unique_id "Z5A9cNAq_JB1vR_4OPfBfQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2025-01-20 07:04:54
(1 year ago)
SQL injection attempt.-111
Web App Attack
๐ต๐น
Information Security
2025-01-20 02:38:23
(1 year ago)
Web App Attack
Web App Attack
๐ต๐น
Information Security
2025-01-17 08:38:12
(1 year ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-16 05:38:04
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in ...
show more
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 16 00:37:58.789071 2025] [security2:error] [pid 7781:tid 7781] [client 139.99.160.195:51819] [client 139.99.160.195] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.southtncardio.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.southtncardio.com"] [uri "/index.php"] [unique_id "Z4ibNsRX2cOgGhcDERNAygAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐น
Information Security
2025-01-16 03:30:06
(1 year ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-15 18:48:58
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in ...
show more
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 15 13:48:51.880591 2025] [security2:error] [pid 624407:tid 624407] [client 139.99.160.195:49648] [client 139.99.160.195] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||psdinnersready.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "psdinnersready.com"] [uri "/index.php"] [unique_id "Z4gDE3jhn1LBwSXaNfB8kQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2025-01-15 18:10:17
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (AU/Australia/ip195.ip-139-99-16 ...
show more
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (AU/Australia/ip195.ip-139-99-160.net): N in the last X secs
show less
Web App Attack
๐บ๐ธ
rdpguard.com
2025-01-15 09:22:18
(1 year ago)
RdpGuard detected brute-force attempt on ASP.NET Web Forms
Brute-Force
๐ฌ๐ง
noise.agency
2025-01-14 15:05:52
(1 year ago)
(mod_security) mod_security triggered on hostname [redacted] 139.99.160.195 (AU/Australia/ip195.ip-1 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 139.99.160.195 (AU/Australia/ip195.ip-139-99-160.net)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2025-01-14 06:21:53
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in ...
show more
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 01:21:49.841726 2025] [security2:error] [pid 203480:tid 203604] [client 139.99.160.195:59664] [client 139.99.160.195] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.seips.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.seips.org"] [uri "/viewitem.php"] [unique_id "Z4YCfaAwQAJJ--yFdfKYcwAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-14 04:57:03
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in ...
show more
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 13 23:56:56.038144 2025] [security2:error] [pid 3075456:tid 3075456] [client 139.99.160.195:63045] [client 139.99.160.195] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.jwwsb.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.jwwsb.org"] [uri "/index.php"] [unique_id "Z4XumCbO9RFt5si491o3iAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-14 01:58:33
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in ...
show more
(mod_security) mod_security (id:210350) triggered by 139.99.160.195 (ip195.ip-139-99-160.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 13 20:58:29.507447 2025] [security2:error] [pid 11242:tid 11242] [client 139.99.160.195:59595] [client 139.99.160.195] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||stonehillpolicies.myomni.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "stonehillpolicies.myomni.us"] [uri "/portal/index.php/gc-links/hearing-guidelines"] [unique_id "Z4XExdMFIaDhlW_aPqWDFQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
John Akermanis
2025-01-13 19:22:00
(1 year ago)
SQL injection hacks
SQL Injection