๐ณ๐ฑ
e.fierstra
2026-06-08 11:34:48
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-06-08 11:20:04
(1 week ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-06-08 09:51:31
(1 week ago)
Scanning for web/db/file exploits on www.j-kuperus.nl
SQL Injection
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-06-08 09:21:56
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 09:13:29
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 05:13:25.916630 2026] [security2:error] [pid 10170:tid 10170] [client 145.79.212.115:55760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "forsythfixit.com"] [uri "/laravel/.env"] [unique_id "aiaHtUSM2w1r4PFaE-zt-wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-08 04:21:54
(1 week ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
WellSpring
2026-06-08 03:31:43
(1 week ago)
env exposure on naturologie.com/members/.env โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
๐ซ๐ท
masterguru
2026-06-08 00:06:21
(1 week ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 19:38:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 15:38:09.286697 2026] [security2:error] [pid 14149:tid 14149] [client 145.79.212.115:47150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "donaldcoleman.com"] [uri "/dev/.env"] [unique_id "aiXIob0DKNmiGmqBarzRRQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 18:22:13
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 14:22:10.178690 2026] [security2:error] [pid 24181:tid 24181] [client 145.79.212.115:61032] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shadowveil.io"] [uri "/api/.env.save"] [unique_id "aiW20vcXvTaTU-kcp7mZpQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-07 17:25:39
(2 weeks ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-06-07 16:32:39
(2 weeks ago)
[Mon Jun 08 02:32:38.531965 2026] [security2:error] [pid 936185] [client 145.79.212.115:25536] [clie ...
show more
[Mon Jun 08 02:32:38.531965 2026] [security2:error] [pid 936185] [client 145.79.212.115:25536] [client 145.79.212.115] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "whoson2day.com"] [uri "/backend/.env"] [unique_id "aiWdJjXnKeC32eRaSj5i_QAAAAA"]
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-06-07 16:24:39
(2 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 16:04:12
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.212.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 12:04:09.520177 2026] [security2:error] [pid 13781:tid 13804] [client 145.79.212.115:62426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "strengthsmatter.com"] [uri "/admin/.env"] [unique_id "aiWWeUAgCVrf3BCJLbN3sQAAAdU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-07 14:35:09
(2 weeks ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host