🇫🇷
david.houstin
2026-09-07 16:36:42
(2 hours ago)
143.58.132.53 - - [07/Sep/2026:18:36:32 +0200] "GET /test.php HTTP/1.1" 404 36684 "-" "Mozilla/5.0" ...
show more
143.58.132.53 - - [07/Sep/2026:18:36:32 +0200] "GET /test.php HTTP/1.1" 404 36684 "-" "Mozilla/5.0" 52289 -
143.58.132.53 - - [07/Sep/2026:18:36:34 +0200] "GET /db.sqlite HTTP/1.1" 404 36746 "-" "Mozilla/5.0" 63822 -
143.58.132.53 - - [07/Sep/2026:18:36:35 +0200] "GET /composer.json HTTP/1.1" 404 41661 "-" "Mozilla/5.0" 50138 -
143.58.132.53 - - [07/Sep/2026:18:36:37 +0200] "GET /composer.lock HTTP/1.1" 404 36554 "-" "Mozilla/5.0" 50990 -
143.58.132.53 - - [07/Sep/2026:18:36:39 +0200] "GET /telescope/api/stats HTTP/1.1" 404 36408 "-" "Mozilla/5.0" 47194 -
143.58.132.53 - - [07/Sep/2026:18:36:40 +0200] "GET /api/documentation HTTP/1.1" 404 36196 "-" "Mozilla/5.0" 57112 -
...
show less
Web App Attack
Bad Web Bot
🇩🇪
langenkamp-media
2026-09-07 16:21:44
(3 hours ago)
Fail2Ban: Banned from jail nginx-scan-critical on 3dausdu.de
Web App Attack
🇫🇷
Security_Whaller
2026-09-07 15:02:18
(4 hours ago)
Malicious activity detected on Honeypot.
Brute-Force
Hacking
Web App Attack
🇬🇧
Apache
2026-09-07 10:02:37
(9 hours ago)
(mod_security) mod_security (id:920350) triggered by 143.58.132.53 (GB/United Kingdom/132.58.143.53. ...
show more
(mod_security) mod_security (id:920350) triggered by 143.58.132.53 (GB/United Kingdom/132.58.143.53.bcube.co.uk): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
🇩🇪
paissangroup
2026-09-07 09:11:42
(10 hours ago)
Multiple WAF Violations
Web App Attack
🇫🇷
Vaction
2026-09-07 08:25:20
(10 hours ago)
143.58.132.53 - - [07/Sep/2026:10:25:19 +0200] "GET /_ignition/health-check HTTP/1.1" 404 381 "-" "P ...
show more
143.58.132.53 - - [07/Sep/2026:10:25:19 +0200] "GET /_ignition/health-check HTTP/1.1" 404 381 "-" "Python/3.14 aiohttp/3.13.5"
show less
Hacking
Bad Web Bot
Web App Attack
🇺🇸
chronos
2026-09-07 06:55:26
(12 hours ago)
[AUTORAVALT][[07/09/2026 - 03:55:26 -03:00 UTC]
Attack from [RIPE Network Coordination Centre]
[143. ...
show more
[AUTORAVALT][[07/09/2026 - 03:55:26 -03:00 UTC]
Attack from [RIPE Network Coordination Centre]
[143.58.132.53][132.58.143.53.bcube.co.uk]
Action: BLocKed
DDoS Attack -> Participating in distributed denial-of-service.
Phishing -> Phishing websites and/or email.
Web Spam -> Comment/forum spam, HTTP referer spam, or other CMS spam.
Blog Spam -> CMS blog comment ]
...
show less
DDoS Attack
Phishing
Web Spam
Blog Spam
Web App Attack
🇺🇸
chronos
2026-09-07 06:17:05
(13 hours ago)
[AUTORAVALT][[07/09/2026 - 03:17:05 -03:00 UTC]
Attack from [RIPE Network Coordination Centre]
[143. ...
show more
[AUTORAVALT][[07/09/2026 - 03:17:05 -03:00 UTC]
Attack from [RIPE Network Coordination Centre]
[143.58.132.53][132.58.143.53.bcube.co.uk]
Action: BLocKed
DDoS Attack -> Participating in distributed denial-of-service.
Phishing -> Phishing websites and/or email.
Web Spam -> Comment/forum spam, HTTP referer spam, or other CMS spam.
Blog Spam -> CMS blog comment ]
...
show less
DDoS Attack
Phishing
Web Spam
Blog Spam
Web App Attack
🇫🇷
hxsain
2026-09-07 06:11:01
(13 hours ago)
Blocked by UFW on fr2 [8006/tcp] | SPT: 9654 | TTL: 114 | LEN: 52 | TOS: 0x00 • Reported by: github. ...
show more
Blocked by UFW on fr2 [8006/tcp] | SPT: 9654 | TTL: 114 | LEN: 52 | TOS: 0x00 • Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
🇩🇪
psauxit
2026-09-07 05:59:23
(13 hours ago)
Fail2Ban - UFW port probing on unauthorized port
Port Scan
🇺🇸
ratcarcher-labs
2026-09-07 05:46:13
(13 hours ago)
[Ratcarcher Labs/MutantShield honeypot CTI] actor=human vector=brute_force_auth risk=65 attacks=42 d ...
show more
[Ratcarcher Labs/MutantShield honeypot CTI] actor=human vector=brute_force_auth risk=65 attacks=42 depth=4 node=node-us-east canary=no human_score=50 agentic=15 cc=GB asn=Hyperoptic Ltd | Data provided by Ratcarcher Labs · https://ratcarcher-labs.com · docs https://api.ratcarcher-labs.com/api/v1/public/docs
show less
Brute-Force
SSH
Anonymous
2026-09-07 05:38:16
(13 hours ago)
fail2ban jail apache-scanner: 143.58.132.53 - - [06/Sep/2026:22:25:55 -0700] "GET /nova-vendor/nova/ ...
show more
fail2ban jail apache-scanner: 143.58.132.53 - - [06/Sep/2026:22:25:55 -0700] "GET /nova-vendor/nova/app.js HTTP/1.1" 403 464 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:55 -0700] "GET /telescope/requests HTTP/1.1" 403 4414 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:55 -0700] "GET /telescope HTTP/1.1" 403 4414 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:55 -0700] "GET /_debugbar/open HTTP/1.1" 403 4414 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:56 -0700] "GET /sanctum/csrf-cookie HTTP/1.1" 403 464 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:56 -0700] "GET /composer.lock HTTP/1.1" 403 464 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:56 -0700] "GET /phpunit.xml HTTP/1.1" 403 464 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:56 -0700] "GET /artisan HTTP/1.1" 403 464 "-" "Mozilla/5.0" 143.58.132.53 - - [06/Sep/2026:22:25:56 -0700] "GET /_ignition/
show less
Web App Attack
Port Scan
🇵🇱
strefapi_com
2026-09-07 04:50:11
(14 hours ago)
Brute-force on web app
...
Brute-Force
Web App Attack
🇫🇷
Thibault Millant
2026-09-06 22:05:29
(21 hours ago)
143.58.132.53 - - [06/Sep/2026:22:05:02 +0000] "GET /.git/config HTTP/1.1" 404 118 "-" "Mozilla/5.0" ...
show more
143.58.132.53 - - [06/Sep/2026:22:05:02 +0000] "GET /.git/config HTTP/1.1" 404 118 "-" "Mozilla/5.0"
...
show less
Brute-Force
Exploited Host
SSH
🇬🇧
blik2108
2026-09-06 18:36:42
(1 day ago)
143.58.132.53 - - [06/Sep/2026:18:36:39 +0000] "GET /.env HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp ...
show more
143.58.132.53 - - [06/Sep/2026:18:36:39 +0000] "GET /.env HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
143.58.132.53 - - [06/Sep/2026:18:36:40 +0000] "GET /.env HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
143.58.132.53 - - [06/Sep/2026:18:36:40 +0000] "GET /composer.json HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
143.58.132.53 - - [06/Sep/2026:18:36:40 +0000] "GET /.git/HEAD HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
143.58.132.53 - - [06/Sep/2026:18:36:40 +0000] "GET /.git/config HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
143.58.132.53 - - [06/Sep/2026:18:36:40 +0000] "GET /.env HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
143.58.132.53 - - [06/Sep/2026:18:36:40 +0000] "GET /phpinfo.php HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
143.58.132.53 - - [06/Sep/2026:18:36:40 +0000] "GET /backup.zip HTTP/1.1" 301 169 "-" "Python/3.14 aiohttp/3.13.5" "-"
...
show less
Web App Attack