๐ช๐ธ
el-brujo
2026-08-22 09:43:06
(48 minutes ago)
Cloudflare WAF: Request Path: /.git/config Request Query: Host: elhacker.net userAgent: Mozilla/5.0 ...
show more
Cloudflare WAF: Request Path: /.git/config Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 Action: block Source: firewallManaged ASN Description: DigitalOcean, LLC Country: US Method: GET Timestamp: 2026-08-22T09:43:06Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
๐ซ๐ฎ
YF
2026-08-22 09:00:29
(1 hour ago)
Git config exposure probe
Web App Attack
Anonymous
2026-08-22 08:59:22
(1 hour ago)
161.35.63.23 - - [22/Aug/2026:08:59:21 +0000] "GET /.git/config HTTP/1.1" 404 437 "-" "Mozilla/5.0 ( ...
show more
161.35.63.23 - - [22/Aug/2026:08:59:21 +0000] "GET /.git/config HTTP/1.1" 404 437 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
sdos.es
2026-08-22 08:13:10
(2 hours ago)
"Restricted File Access Attempt - Matched Data: /.git/ found within REQUEST_FILENAME: /.git/config"
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-08-22 07:55:29
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-08-22 07:37:07
(2 hours ago)
161.35.63.23 - - [22/Aug/2026:09:37:06 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ( ...
show more
161.35.63.23 - - [22/Aug/2026:09:37:06 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-22 06:08:56
(4 hours ago)
cloudlinux2 fail2ban: 2026-08-22 08:04:17,190 fail2ban.filter [1480]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-22 08:04:17,190 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 104.23.160.3 - 2026-08-22 08:04:17cloudlinux2 fail2ban: 2026-08-22 08:04:17,362 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 104.23.160.83 - 2026-08-22 08:04:17cloudlinux2 fail2ban: 2026-08-22 08:04:58,193 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 103.224.152.109 - 2026-08-22 08:04:58cloudlinux2 fail2ban: 2026-08-22 08:05:08,706 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 104.23.160.80 - 2026-08-22 08:05:08cloudlinux2 fail2ban: 2026-08-22 08:05:08,719 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 104.23.160.154 - 2026-08-22 08:05:08cloudlinux2 fail2ban: 2026-08-22 08:05:52,275 fail2ban.filter [1480]: INFO [recidive] Found 103.224.152.109 - 2026-08-22 08:05:52cloudlinux2 fail2ban: 2026-08-22 08:05:52,183 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 103.224.152.109 - 2026-08-22 08:05:
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-22 05:43:41
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 01:43:37.260424 2026] [security2:error] [pid 21054:tid 21054] [client 161.35.63.23:33958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fireteam.faith"] [uri "/.git/config"] [unique_id "aok3Cd8VPZa49CGkS20-yAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 05:36:42
(4 hours ago)
Web scanner: GET /.git/config
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-22 05:26:48
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 01:26:44.132952 2026] [security2:error] [pid 27498:tid 27498] [client 161.35.63.23:49116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trispeccorp.com"] [uri "/.git/config"] [unique_id "aokzFGi6xOCvcKR-tthKsgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-08-22 05:15:04
(5 hours ago)
7 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ฉ๐ช
MSC IT for Business GmbH
2026-08-22 03:50:08
(6 hours ago)
GASTO/CrowdSec: gasto/modsec-critical triggered (via crowdsec-agent, categories 15,21)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 03:15:40
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 23:15:35.466268 2026] [security2:error] [pid 6246:tid 6246] [client 161.35.63.23:55026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fedeoliva.cl"] [uri "/.git/config"] [unique_id "aokUV2bI7N_UKAleHDNkmgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
dominioz
2026-08-22 02:39:14
(7 hours ago)
2026-08-22 02:38:21 GET /.git/config - - 161.35.63.23 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+Apple ...
show more
2026-08-22 02:38:21 GET /.git/config - - 161.35.63.23 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 465
2026-08-22 02:38:22 GET /.git/config - - 161.35.63.23 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 566
2026-08-22 02:38:22 GET /.git/config - - 161.35.63.23 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 566
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 02:05:01
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 161.35.63.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 22:04:54.980007 2026] [security2:error] [pid 20553:tid 20553] [client 161.35.63.23:36408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vaezi.com"] [uri "/.git/config"] [unique_id "aokDxp8hDfsd9oX_fdWzFAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack