๐บ๐ธ
TPI-Abuse
2026-07-27 16:21:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 12:21:02.895881 2026] [security2:error] [pid 4015478:tid 4015478] [client 16.59.103.180:41856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ecodesarrollourbano.com"] [uri "/.git/config"] [unique_id "ameFblFSGrXKFXYG87YoKAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-07-27 16:20:05
(1 day ago)
URL Probing: /site/.env
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-27 15:28:00
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
Hazzard
2026-07-27 13:35:30
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-07-27 10:39:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 06:39:28.833001 2026] [security2:error] [pid 1243222:tid 1243222] [client 16.59.103.180:54020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eckerberg.net"] [uri "/.git/config"] [unique_id "amc1YMigtn7yp8zCe4eN_gAAADQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Lunix
2026-07-27 09:59:39
(1 day ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 09:21:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 05:21:30.955174 2026] [security2:error] [pid 2318218:tid 2318293] [client 16.59.103.180:35942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "echrony.com"] [uri "/.git/config"] [unique_id "amcjGkzp_7Y5sJTVoYynyQAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 06:34:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 16.59.103.180 (ec2-16-59-103-180.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 02:34:23.291591 2026] [security2:error] [pid 730955:tid 730955] [client 16.59.103.180:55982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "echinech.com"] [uri "/.git/config"] [unique_id "amb776-ZtzPib1xK7uYjRwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-07-27 05:47:16
(1 day ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-25 21:59:10
(2 days ago)
Auto-ban: >3000 req/min op 2026-07-25
Web App Attack
SSH
Hacking
๐ฉ๐ช
Ba-Yu
2026-07-25 02:46:48
(3 days ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
dynamix
2026-07-24 23:37:09
(3 days ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
DocNetzwerk
2026-07-24 05:00:15
(4 days ago)
(mod_security) mod_security triggered on hostname [redacted] 16.59.103.180 (US/United States/ec2-16- ...
show more
(mod_security) mod_security triggered on hostname [redacted] 16.59.103.180 (US/United States/ec2-16-59-103-180.us-east-2.compute.amazonaws.com)
show less
SQL Injection