๐ช๐ธ
librebit
2026-08-22 04:57:04
(1 day ago)
Brute force
Brute-Force
๐ฉ๐ช
filstal.org
2026-08-18 13:18:13
(5 days ago)
Unauthorized web crawling by known aggressive crawler or data harvesting bot detected by Fail2Ban
Bad Web Bot
๐น๐ท
neron
2026-08-15 23:06:48
(1 week ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-10 10:29:21
(1 week ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-05 16:29:42
(2 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 12:39:36
(2 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.133 (crawl-149-56-160-133.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.133 (crawl-149-56-160-133.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 08:39:29.734430 2026] [security2:error] [pid 26979:tid 26979] [client 149.56.160.133:48557] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.ospreylake.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.ospreylake.org"] [uri "/AppData/Local/Temp/osprey_milfoil.htm"] [unique_id "aiv-Ad21x6Lm3RHqZ1vt1gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
juguemosalacarioca.com
2026-04-14 02:32:58
(4 months ago)
Multiple HTTP calls attempting to GET resources using common API calls or formats on port 8080
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 18:25:36
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 149.56.160.133 (crawl-149-56-160-133.dataprovid ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.160.133 (crawl-149-56-160-133.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 14:25:30.152592 2026] [security2:error] [pid 8461:tid 8461] [client 149.56.160.133:59495] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.andiamorun.com|F|2"] [data ".wearevolume.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.andiamorun.com"] [uri "/www.wearevolume.com"] [unique_id "acbLmhomPX_bV8OHqBHl5QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-04 12:31:27
(5 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.133 (crawl-149-56-160-133.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.133 (crawl-149-56-160-133.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 04 07:31:22.501748 2026] [security2:error] [pid 2378:tid 2378] [client 149.56.160.133:55219] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.godcontends.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.godcontends.com"] [uri "/index.php"] [unique_id "aagmGuY8Z7vv2bK_rUOWFwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2026-02-07 00:31:55
(6 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ท
conseilgouz
2026-02-02 12:33:26
(6 months ago)
sae-Security key failure(Dataprovider)
Hacking
๐ซ๐ท
Hippoline
2026-01-20 06:29:02
(7 months ago)
[Tue Jan 20 07:28:59.618387 2026] [authz_core:error] [pid 1677] [client 149.56.160.133:53851] AH0163 ...
show more
[Tue Jan 20 07:28:59.618387 2026] [authz_core:error] [pid 1677] [client 149.56.160.133:53851] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Tue Jan 20 07:28:59.626253 2026] [authz_core:error] [pid 1677] [client 149.56.160.133:53851] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Tue Jan 20 07:29:00.921599 2026] [authz_core:error] [pid 1676] [client 149.56.160.133:40129] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Tue Jan 20 07:29:00.922222 2026] [authz_core:error] [pid 1676] [client 149.56.160.133:40129] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Tue Jan 20 07:29:02.273436 2026] [authz_core:error] [pid 18696] [client 149.56.160.133:55863] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Tue Jan 20 07:29:02.277581 2026] [authz_core:err
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
antbr.com
2026-01-19 22:06:14
(7 months ago)
AntBR.com: [Repeated Attack]==> /humans.txt
Web App Attack
๐ช๐ธ
librebit
2026-01-04 10:52:05
(7 months ago)
Brute force
Brute-Force
๐ฉ๐ช
dklueh79
2025-12-23 12:28:05
(8 months ago)
Probe for vulnerabilities. Path attempted: /security
Web App Attack