๐ฌ๐ง
Axel
2026-06-08 01:01:51
(2 hours ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /core/.env.sa ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /core/.env.save Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ซ๐ฎ
inlink.ltd
2026-06-08 00:37:03
(2 hours ago)
dot file probe
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-08 00:04:35
(3 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐จ๐ญ
4server
2026-06-07 23:29:55
(3 hours ago)
[MonJun0801:29:49.6714142026][security2:error][pid1283221:tid1283480][client145.79.20.44:0]ModSecuri ...
show more
[MonJun0801:29:49.6714142026][security2:error][pid1283221:tid1283480][client145.79.20.44:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"privilege-service.ch\"][uri\"/backend/.env\"][unique_id\"aiX-7aChgZZ0L1OodMs-owAAAQ8\"]
show less
Hacking
Web App Attack
Anonymous
2026-06-07 23:05:07
(4 hours ago)
Blocked: Reason='Suspicious traffic score=60 (review-based detection)'; Requests=12
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-07 22:45:14
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 18:45:01.054054 2026] [security2:error] [pid 15030:tid 15030] [client 145.79.20.44:54970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pointandshootfilm.com"] [uri "/core/.env"] [unique_id "aiX0bR4vaBD4KFk-80cSDgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-07 22:35:01
(4 hours ago)
suspicious request in access.log
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-07 21:43:28
(5 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-07 21:38:10
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 17:38:06.264674 2026] [security2:error] [pid 472:tid 472] [client 145.79.20.44:20722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aktkaro.com"] [uri "/api/.env.save"] [unique_id "aiXkvjfMUo0DuQhmby-iLQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-06-07 21:38:01
(5 hours ago)
trying wp-login.php/xmlrpc.php 36 times in 1 minutes
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-06-07 21:21:13
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-06-07 21:03:47
(6 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-06-07 20:19:30
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 20:04:15
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 16:04:07.717161 2026] [security2:error] [pid 32163:tid 32175] [client 145.79.20.44:25608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sonatro.io"] [uri "/.env.save"] [unique_id "aiXOt5I2G6_WJN316AZ7nAAAAgc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 19:10:32
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.20.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 15:10:27.342842 2026] [security2:error] [pid 25697:tid 25697] [client 145.79.20.44:61430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "10bestattorneys.com"] [uri "/api/.env"] [unique_id "aiXCIxyoewrGzbjXyACmYwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack