🇺🇸
wbsouza
2026-09-14 03:49:20
(4 minutes ago)
CrowdSec: infra/bad-path-probe — automated firewall drops on self-hosted IDS sensor
Hacking
🇪🇸
Yoeph
2026-09-13 22:39:26
(5 hours ago)
Attacking server service nginx-movimientos-forbidden (Permanently Banned by Fail2ban on TurnoControl ...
show more
Attacking server service nginx-movimientos-forbidden (Permanently Banned by Fail2ban on TurnoControlPro VPS)
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-13 21:59:19
(5 hours ago)
Auto-ban: >3000 req/min op 2026-09-13
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-13 11:46:13
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 151.240.44.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 151.240.44.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 07:46:04.969830 2026] [security2:error] [pid 8670:tid 8670] [client 151.240.44.183:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jspsf.com"] [uri "/.env"] [unique_id "aqaM_GIFZtRHDMJ1iJ0vFwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Alt255
2026-09-13 11:10:17
(16 hours ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 151.240.44.183 - - [13/Sep/2026:13:10:17 +0200] "GET /.env HTTP/1.1" 301 594 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 10:28:44
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 151.240.44.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 151.240.44.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 06:28:38.930477 2026] [security2:error] [pid 23405:tid 23405] [client 151.240.44.183:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goalsnet.net"] [uri "/.env"] [unique_id "aqZ61pA3W3bAdOYr4MhGXQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-13 10:05:23
(17 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
🇩🇪
Vegascosmetics
2026-09-13 10:02:35
(17 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.env (Match: /.env)
show less
Hacking
Brute-Force
Web App Attack
🇷🇺
DZBOT
2026-09-13 09:54:23
(17 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
🇺🇸
SLSLLC
2026-09-13 08:46:06
(19 hours ago)
151.240.44.183 - - [13/Sep/2026:08:46:06 +0000] "GET /.env HTTP/2.0" 403 1927 "-" "Mozilla/5.0 (Maci ...
show more
151.240.44.183 - - [13/Sep/2026:08:46:06 +0000] "GET /.env HTTP/2.0" 403 1927 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Brute-Force
Web App Attack
🇨🇭
sternwart
2026-09-13 08:22:36
(19 hours ago)
Automatisch erkannt: Zugriff auf /.env (alpasana.ch)
Web App Attack
Bad Web Bot
🇩🇪
paissangroup
2026-09-13 08:12:16
(19 hours ago)
Multiple WAF Violations
Web App Attack
🇦🇺
Klaverstyn
2026-09-13 08:08:29
(19 hours ago)
Repeated 403 Forbidden responses
Web App Attack
🇩🇪
Dentax
2026-09-13 08:05:06
(19 hours ago)
151.240.44.183 - - [13/Sep/2026:10:05:06 +0200] "GET /.env HTTP/1.1" 404 381 "-" "Mozilla/5.0 (Macin ...
show more
151.240.44.183 - - [13/Sep/2026:10:05:06 +0200] "GET /.env HTTP/1.1" 404 381 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 08:04:48
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 151.240.44.183 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 151.240.44.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 04:04:43.814343 2026] [security2:error] [pid 21148:tid 21148] [client 151.240.44.183:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "perl-photo.com"] [uri "/.env"] [unique_id "aqZZG32QwrlJrq4axpHsGAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack