🇺🇸
nyt
2026-09-12 14:21:21
(3 minutes ago)
Sensitive File Probe, WP Config Probe
Web App Attack
🇳🇱
MyGlobalFlowers
2026-09-12 12:11:00
(2 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇱
melroy89
2026-09-12 08:56:18
(5 hours ago)
146.70.165.137 - - [12/Sep/2026:10:55:18 +0200] "GET /wp-config.php.old HTTP/1.1" 403 524 "-" "Mozi ...
show more
146.70.165.137 - - [12/Sep/2026:10:55:18 +0200] "GET /wp-config.php.old HTTP/1.1" 403 524 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0" "melroy.org" 0.000
146.70.165.137 - - [12/Sep/2026:10:55:18 +0200] "GET /config/secrets.yml HTTP/1.1" 403 524 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0" "melroy.org" 0.000
146.70.165.137 - - [12/Sep/2026:10:55:21 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 403 524 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0" "melroy.org" 0.000
146.70.165.137 - - [12/Sep/2026:10:55:25 +0200] "GET /phpinfo.php HTTP/1.1" 403 524 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0" "melroy.org" 0.001
146.70.165.137 - - [12/Sep/2026:10:55:26 +0200] "GET /info.php HTTP/1.1" 403 524 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0" "melroy.org" 0.001
146.70.165.137 - - [12/Sep/2026:10:55:26 +0200] "GET /php_info.php HTTP/1.1" 403 524 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0
...
show less
Web App Attack
🇺🇸
countdownmail.com
2026-09-12 07:41:02
(6 hours ago)
Credential brute-force attempts with multiple failed login requests. Extensive web application scann ...
show more
Credential brute-force attempts with multiple failed login requests. Extensive web application scanning for vulnerabilities. High volume automated attack.
show less
Bad Web Bot
Brute-Force
🇳🇱
informedclearly.com
2026-09-12 07:03:10
(7 hours ago)
WAF_BAN reason=BACKUP_PROBE rule=BACKUP_EXT hits=3 path=/wp-config.php.bak? ua=Mozilla/5.0 (Windows ...
show more
WAF_BAN reason=BACKUP_PROBE rule=BACKUP_EXT hits=3 path=/wp-config.php.bak? ua=Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0
show less
Hacking
🇫🇷
tecnoacquisti.com
2026-09-12 00:52:27
(13 hours ago)
PrestaShop Security Module: suspicious probe path detected (/.env)
Web App Attack
🇫🇷
arsonist
2026-09-11 20:37:11
(17 hours ago)
[fail2ban]
2026-09-11T20:37:11.297565+00:00 arson caddy[1890453]: {"level":"info","ts":1789159031.29 ...
show more
[fail2ban]
2026-09-11T20:37:11.297565+00:00 arson caddy[1890453]: {"level":"info","ts":1789159031.2975295,"logger":"http.log.access.default","msg":"handled request","request":{"remote_ip":"146.70.165.137","remote_port":"59422","client_ip":"146.70.165.137","proto":"HTTP/1.1","method":"GET","host":"possum.city","uri":"/backend/.env","headers":{"User-Agent":["Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0"],"Accept":["text/html,application/xhtml+xml,application/javascript,*/*"],"Accept-Encoding":["gzip, deflate"],"Connection":["close"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"http/1.1","server_name":"possum.city","ech":false}},"bytes_read":0,"user_id":"","duration":0.000064261,"size":7,"status":418,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Content-Type":["text/plain; charset=utf-8"]}}
...
show less
Bad Web Bot
🇫🇷
arsonist
2026-09-11 19:04:45
(19 hours ago)
[fail2ban]
2026-09-11T19:04:44.972677+00:00 arson caddy[1890453]: {"level":"info","ts":1789153484.97 ...
show more
[fail2ban]
2026-09-11T19:04:44.972677+00:00 arson caddy[1890453]: {"level":"info","ts":1789153484.972607,"logger":"http.log.access.default","msg":"handled request","request":{"remote_ip":"146.70.165.137","remote_port":"14698","client_ip":"146.70.165.137","proto":"HTTP/1.1","method":"GET","host":"tc14.space","uri":"/app/.env","headers":{"User-Agent":["Mozilla/5.0 (Windows NT 10.0; Win64; x64) SupaGuard/13.0"],"Accept":["text/html,application/xhtml+xml,application/javascript,*/*"],"Accept-Encoding":["gzip, deflate"],"Connection":["close"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"http/1.1","server_name":"tc14.space","ech":false}},"bytes_read":0,"user_id":"","duration":0.000084539,"size":7,"status":418,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Content-Type":["text/plain; charset=utf-8"]}}
...
show less
Bad Web Bot
🇩🇪
MusicLibrary
2026-09-11 18:32:07
(19 hours ago)
Probing foreign-stack admin panels / known exploit paths (Joomla, phpMyAdmin, phpunit, OWA, etc.)
Bad Web Bot
Web App Attack
🇦🇺
afleventoffice.com.au
2026-09-11 04:31:56
(1 day ago)
GET /app/.env HTTP/1.1
Web App Attack
🇺🇸
[email protected]
2026-09-11 03:03:49
(1 day ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T03:03:49Z
Brute-Force
🇺🇸
[email protected]
2026-09-11 02:43:04
(1 day ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T02:43:04Z
Brute-Force
🇺🇸
[email protected]
2026-09-11 02:28:02
(1 day ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T02:28:01Z
Brute-Force
🇺🇸
[email protected]
2026-09-11 02:07:04
(1 day ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T02:07:04Z
Brute-Force
🇺🇸
[email protected]
2026-09-11 01:49:25
(1 day ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T01:49:25Z
Brute-Force