๐บ๐ธ
TPI-Abuse
2026-06-28 17:48:16
(47 seconds ago)
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 13:48:09.643684 2026] [security2:error] [pid 7535:tid 7535] [client 15.204.146.92:39968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jimgrenier.com"] [uri "/.env.production"] [unique_id "akFeWb0FxsoojQ1bOhuuzwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
HerrWolf
2026-06-28 10:45:03
(7 hours ago)
CrowdSec Detection: crowdsecurity/http-sensitive-files
Web App Attack
๐ฉ๐ช
piticu iuli
2026-06-28 10:39:25
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 15.204.146.92 (US/United States/ip92.ip ...
show more
(mod_security) mod_security triggered on hostname [redacted] 15.204.146.92 (US/United States/ip92.ip-15-204-146.us)
show less
SQL Injection
Anonymous
2026-06-28 10:30:03
(7 hours ago)
CrowdSec decision: crowdsecurity/http-sensitive-files (origin: crowdsec)
Web App Attack
๐ฉ๐ช
MusicLibrary
2026-06-28 10:05:08
(7 hours ago)
Attempted access to sensitive configuration files (.env, .git, etc.)
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 09:52:26
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 05:52:20.024876 2026] [security2:error] [pid 23292:tid 23292] [client 15.204.146.92:55876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lightedpath.com"] [uri "/.git/HEAD"] [unique_id "akDu1BjvM1bc_-FAO6sdqwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 09:32:20
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 05:32:16.667579 2026] [security2:error] [pid 32094:tid 32094] [client 15.204.146.92:40744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lindaporcello.com"] [uri "/.git/HEAD"] [unique_id "akDqIOoBsNxCaDwBu3rAwgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2026-06-28 09:28:57
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (US/United States/ip92.ip-15-204- ...
show more
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (US/United States/ip92.ip-15-204-146.us): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-06-28 08:53:07
(8 hours ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-28 08:51:56
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 04:51:48.825344 2026] [security2:error] [pid 7914:tid 7914] [client 15.204.146.92:39410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "leviwalkerportfolio.com"] [uri "/.git/HEAD"] [unique_id "akDgpCv5MddZswr_o6BILQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-28 08:51:12
(8 hours ago)
Bot / seems abusive / Apache connections: 21
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-28 08:43:44
(9 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 08:08:03
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 15.204.146.92 (ip92.ip-15-204-146.us): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 04:07:58.972104 2026] [security2:error] [pid 17909:tid 17909] [client 15.204.146.92:45724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "linzylyne.com"] [uri "/.git/HEAD"] [unique_id "akDWXltK4ufk0RDOR816AQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐จ
ACE-INFORMATIQUE.NC
2026-06-28 06:00:07
(11 hours ago)
HTTP authentication brute-force blocked by Fail2ban
Brute-Force
๐ฌ๐ง
openstrike.co.uk
2026-06-28 05:14:54
(12 hours ago)
10 attacks on config grabbing URLs (type 2), password grabbing URLs, env grabbing URLs, VC URLs:
GET ...
show more
10 attacks on config grabbing URLs (type 2), password grabbing URLs, env grabbing URLs, VC URLs:
GET /config.json HTTP/1.1
GET /.aws/credentials HTTP/1.1
GET /.env.local HTTP/1.1
GET /.git/config HTTP/1.1
show less
Hacking