๐บ๐ธ
Charlesiv
2026-09-03 16:00:18
(3 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 14061 (Digit ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 14061 (DigitalOcean, LLC)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-09-03T15:42:18Z
Ray ID: a355dd185a789e7e
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ต๐ฑ
Budyn
2026-09-03 13:45:53
(5 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: definitelynotahoneypot.top | URI: /.git/HEAD | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 12:36:36
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 146.190.128.137 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 146.190.128.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:36:29.126384 2026] [security2:error] [pid 1073:tid 1073] [client 146.190.128.137:38474] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||chaosstaffing.apfarrell.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "chaosstaffing.apfarrell.com"] [uri "/devu3bonlinetest_anthony.sql"] [unique_id "aplpzR3QaHIXoAs-Xt9s1QAAAAc"], referer: https://www.google.com/search?q=apfarrell
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 01:22:22
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 146.190.128.137 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 146.190.128.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:22:17.397277 2026] [security2:error] [pid 6077:tid 6095] [client 146.190.128.137:40966] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||charteredwealthmanager.aafm.us|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "charteredwealthmanager.aafm.us"] [uri "/http/charteredfinancialmanager.com"] [unique_id "apjLyR0QHvlhbJeM4U3yZAAAAYs"], referer: https://www.google.com/search?q=aafm
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-02 23:03:03
(20 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: portal.budyn.ovh | URI: /wp-admin/ | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
webgobe
2026-09-02 22:52:54
(20 hours ago)
wew-Joomla User : try to access forms...
Hacking
Anonymous
2026-09-02 21:20:17
(21 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐น๐ท
ferique
2026-09-02 20:01:38
(23 hours ago)
Real-time Intercept: DNN_AUTH attack. Reference: 2026-09-02 23:01:28.2280 Login failure: 146.190.12 ...
show more
Real-time Intercept: DNN_AUTH attack. Reference: 2026-09-02 23:01:28.2280 Login failure: 146.190.128.137 DNN_AUTH
show less
Web App Attack
Bad Web Bot
๐ซ๐ท
conseilgouz
2026-09-02 16:37:01
(1 day ago)
upw-(visforms) : try to access forms...
Hacking
๐ต๐ฑ
Budyn
2026-09-02 10:51:42
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: dont-eat-the-pudding.top | URI: /backup.sql | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐จ๐ญ
backslash
2026-09-02 09:18:01
(1 day ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
Anonymous
2026-09-02 07:35:53
(1 day ago)
Web application attack detected.
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-02 06:33:45
(1 day ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local blo ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after high AbuseIPDB reputation + local block policy. Evidence: High Abuse + Suspicion (62, Abuse: 54)
show less
Hacking
Exploited Host
Web App Attack
Anonymous
2026-08-31 02:42:54
(3 days ago)
Port Scanner
Port Scan
Anonymous
2026-08-31 02:35:45
(3 days ago)
81/tcp (1 or more attempts)
Port Scan