|
๐บ๐ธ
gu-alvareza
|
|
AndroxGh0st.Malware
|
Hacking
Exploited Host
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [16/Aug/2023:04:21:01 +0300] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [16/Aug/2023:04:21:01 +0300] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐ฎ๐ฉ
hermawan
|
|
[Wed Aug 16 03:24:36.788749 2023] [security2:error] [pid 268107:tid 139971398706752] [client 163.5.1 ...
show more
[Wed Aug 16 03:24:36.788749 2023] [security2:error] [pid 268107:tid 139971398706752] [client 163.5.112.66:53683] [client 163.5.112.66] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/.env" at REQUEST_FILENAME. [file "/etc/modsecurity/coreruleset-3.3.5/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "133"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "karangploso.jatim.bmkg.go.id"] [uri "/.env"] [unique_id "ZNvfBAZMEPb7_DS-vRC7cgAAABo"] [karangploso.jatim.bmkg.go.id] [karangploso.jatim.bmkg.go.id] top=[268235] [TMq793sS3sw] [ZNvfBAZMEPb7_DS-vRC7cgAAABo] keep_alive=[0] [2023-08-16 03:24:36.788752] [R:ZNvfBAZMEPb7_DS-vRC7cgAAABo] UA:'Mozilla/5.0 (X11; Lin
...
show less
|
Hacking
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [15/Aug/2023:22:18:07 +0300] "GET /.env HTTP/1.1" 404 278 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [15/Aug/2023:22:18:07 +0300] "GET /.env HTTP/1.1" 404 278 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [15/Aug/2023:17:40:36 +0300] "GET /.env HTTP/1.1" 404 276 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [15/Aug/2023:17:40:36 +0300] "GET /.env HTTP/1.1" 404 276 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [15/Aug/2023:16:03:31 +0300] "GET /.env HTTP/1.1" 404 273 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [15/Aug/2023:16:03:31 +0300] "GET /.env HTTP/1.1" 404 273 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
163.5.112.66 - - [15/Aug/2023:16:12:19 +0300] "GET /.env HTTP/1.1" 404 276 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
Anonymous
|
|
Restricted File Access Requests
|
Hacking
Brute-Force
|
|
|
Anonymous
|
|
Scanning
|
Port Scan
|
|
|
๐บ๐ธ
TheMadBeaker
|
|
Fail2Ban Ban Triggered
HTTP Exploit Attempt
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [05/Aug/2023:12:59:26 +0300] "GET /.env HTTP/1.1" 404 286 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [05/Aug/2023:12:59:26 +0300] "GET /.env HTTP/1.1" 404 286 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
Anonymous
|
|
Scanning
|
Port Scan
|
|
|
๐ฉ๐ช
Ba-Yu
|
|
General hacking/exploits/scanning
|
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [05/Aug/2023:05:50:57 +0300] "GET /.env HTTP/1.1" 404 277 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [05/Aug/2023:05:50:57 +0300] "GET /.env HTTP/1.1" 404 277 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [05/Aug/2023:01:29:26 +0300] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [05/Aug/2023:01:29:26 +0300] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
163.5.112.66 - - [04/Aug/2023:23:20:21 +0300] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (X11; Li ...
show more
163.5.112.66 - - [04/Aug/2023:23:20:21 +0300] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
163.5.112.66 - - [04/Aug/2023:23:20:22 +0300] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
|
Web App Attack
|
|