๐ฉ๐ช
Vegascosmetics
2026-09-16 05:58:43
(12 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
OceanTreasure
2026-09-16 05:36:31
(12 hours ago)
tcp/443; Git configuration exposure attempt: "GET /.git/config" @ 2026-09-16T05:36:31Z [proxy]
Web App Attack
Anonymous
2026-09-16 04:00:02
(14 hours ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-15 22:01:11
(20 hours ago)
Auto-ban: >3000 req/min op 2026-09-15
Web App Attack
SSH
Hacking
๐ฉ๐ช
Jochen Pretli
2026-09-15 21:41:51
(20 hours ago)
connection to honeypot
Email Spam
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-15 20:58:29
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:58:26.228218 2026] [security2:error] [pid 31369:tid 31369] [client 144.202.28.13:49160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.techsuite7.net"] [uri "/.git/config"] [unique_id "aqmxchp8WcZurG93BKQRUwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:42:19
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:42:11.800592 2026] [security2:error] [pid 20205:tid 20205] [client 144.202.28.13:54990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.timetemple.org"] [uri "/.git/config"] [unique_id "aqmto8s4O1wJGD2V3a6ftAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:07:24
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:07:18.467154 2026] [security2:error] [pid 4043:tid 4043] [client 144.202.28.13:33908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.photo-craft.org"] [uri "/.git/config"] [unique_id "aqmldqAZNvHEuidq7KFxpwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 19:59:43
(22 hours ago)
[mx01aln] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[mx01aln] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 144.202.28.13 - - [15/Sep/2026:21:59:42 +0200] "GET /.git/config HTTP/1.1" 301 6328 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:39:47
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:39:41.194285 2026] [security2:error] [pid 26068:tid 26068] [client 144.202.28.13:54850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.scoutmountaindistrict.org"] [uri "/.git/config"] [unique_id "aqme_YS0M0SZarX44kk4ngAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:13:39
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:13:31.659976 2026] [security2:error] [pid 5163:tid 5163] [client 144.202.28.13:53356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mariakhalitov.com"] [uri "/.git/config"] [unique_id "aqmY2y9rD_5_Qy7SN1YR5wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-15 18:54:23
(23 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 17:22:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:22:19.591346 2026] [security2:error] [pid 22932:tid 22932] [client 144.202.28.13:52686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.greenroomonline.org"] [uri "/.git/config"] [unique_id "aql-y43VwY45or8nEZsCqgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 17:05:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.202.28.13 (144.202.28.13.vultrusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:05:22.139631 2026] [security2:error] [pid 31956:tid 31956] [client 144.202.28.13:35458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.greatplainswingcaf.org"] [uri "/.git/config"] [unique_id "aql60oQmtBTt3aY8p_rqjwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
LRob
2026-09-15 11:39:18
(1 day ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-15 11:39 UTC
show less
Bad Web Bot