Malicious IP detected by WAF with anomaly score 10.0. Attack types: Exposure of environment file (.e ...
show moreMalicious IP detected by WAF with anomaly score 10.0. Attack types: Exposure of environment file (.env), Timestamp deviates by 5.0 hours, Timestamp deviates by 2.1 hours (+4 more). Activity: 369 requests to 3 URLs. Time: 2025-08-16 20:47:52 (America/Bogota). Origin: US. Source: Automated WAF log analysis.
show less
[Sun Aug 17 05:08:57.846824 2025] [security2:error] [pid 67467:tid 140376252761792] [client 149.57.8 ...
show more[Sun Aug 17 05:08:57.846824 2025] [security2:error] [pid 67467:tid 140376252761792] [client 149.57.85.96:59893] ModSecurity: Access denied with code 403 (phase 1). Match of "ipMatch 103.166.156.58" against "REMOTE_ADDR" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "372"] [id "440006"] [msg "Connection Close Header"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: close found within REMOTE_ADDR: 149.57.85.96 request_line = GET /index.php/prakiraan-cuaca-pelabuhan-tanjung-perak-surabaya/83-akar/maritim HTTP/1.1 Request URI RAW = /index.php/prakiraan-cuaca-pelabuhan-tanjung-perak-surabaya/83-akar/maritim Request Basename = maritim"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-cuaca-pelabuhan-tanjung-perak-surabaya/83-akar/maritim"] [unique_id "aKEBeHa-f71Gj1iT5n7AuQAAAUI"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[67524] [8QCqwM
...
show less