๐ฌ๐ง
openstrike.co.uk
2026-09-30 05:14:15
(14 hours ago)
3 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ซ๐ท
pm33
2026-09-30 02:40:16
(17 hours ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐บ๐ธ
Blank
2026-09-30 02:20:58
(17 hours ago)
Requested /.git/config, a path with no legitimate use on this server. Tripped an automated honeypot.
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-09-30 01:00:53
(18 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ต๐ฑ
gandaflux
2026-09-30 00:39:41
(19 hours ago)
142.93.206.2 [redacted-domain] - [30/Sep/2026:02:35:04 +0200] "GET /.git/config HTTP/1.1" 403 158 "- ...
show more
142.93.206.2 [redacted-domain] - [30/Sep/2026:02:35:04 +0200] "GET /.git/config HTTP/1.1" 403 158 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
142.93.206.2 [redacted-domain] - [30/Sep/2026:02:35:07 +0200] "GET /.git/config HTTP/1.1" 403 158 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
142.93.206.2 [redacted-domain] - [30/Sep/2026:02:39:41 +0200] "GET /.git/config HTTP/1.1" 403 158 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
Major Hostility
2026-09-30 00:15:27
(19 hours ago)
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
Web App Attack
๐ง๐ท
radardatelecom
2026-09-29 22:26:02
(21 hours ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
Anonymous
2026-09-29 22:25:50
(21 hours ago)
Fail2Ban: request for a known-malicious path (.env, .git, wp-login, actuator, ...) on a public web s ...
show more
Fail2Ban: request for a known-malicious path (.env, .git, wp-login, actuator, ...) on a public web server; honeypot hit, banned on first attempt.
show less
Web App Attack
Bad Web Bot
๐ฆ๐บ
A.i.D.A.N.N
2026-09-29 22:14:15
(21 hours ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web application attack detected
Web App Attack
๐ฉ๐ช
4server
2026-09-29 22:07:21
(21 hours ago)
[WedSep3000:07:18.5463252026][security2:error][pid2836344:tid2836443][client142.93.206.2:0]ModSecuri ...
show more
[WedSep3000:07:18.5463252026][security2:error][pid2836344:tid2836443][client142.93.206.2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"autoeuro.lv\"][uri\"/.git/config\"][unique_id\"arw2lnGkvICPbMbyZu6YzgAAAQA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-29 22:00:16
(21 hours ago)
Auto-ban: >3000 req/min op 2026-09-29
Web App Attack
SSH
Hacking
๐บ๐ธ
interbiznw.com
2026-09-29 18:54:08
(1 day ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 16:05:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 142.93.206.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.206.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 12:05:44.788869 2026] [security2:error] [pid 18053:tid 18053] [client 142.93.206.2:35654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beetreelabs.com"] [uri "/.git/config"] [unique_id "arvh2Ek6GEpf9D2ZW6RKtQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 13:44:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 142.93.206.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.206.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 09:44:25.152881 2026] [security2:error] [pid 28222:tid 28989] [client 142.93.206.2:46936] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advometric.com"] [uri "/.git/config"] [unique_id "arvAuQHkX1AYQAi3xan9iQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 13:22:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 142.93.206.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.206.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 09:22:03.290215 2026] [security2:error] [pid 3853:tid 3853] [client 142.93.206.2:60974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beirutbazar.com"] [uri "/.git/config"] [unique_id "aru7e-FKj04tJ53nsYLKAQAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack