๐บ๐ธ
c y
2024-12-03 16:47:56
(1 year ago)
...
Web App Attack
๐ธ๐ช
mr_whitehat
2024-12-03 00:37:02
(1 year ago)
Probed for vulnerable web application: request line: /.env (Possible exploit:Unprotected .env files)
Web App Attack
๐ฉ๐ช
sdos.es
2024-12-02 19:06:15
(1 year ago)
"Restricted File Access Attempt - Matched Data: /.env found within REQUEST_FILENAME: /.env"
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 19:04:38
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 14:04:31.590523 2024] [security2:error] [pid 30527:tid 30527] [client 165.227.233.15:59020] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.240"] [uri "/.env"] [unique_id "Z04Ev2pnHBV0aDGlZ75NDQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 18:45:57
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 13:45:54.395571 2024] [security2:error] [pid 13120:tid 13120] [client 165.227.233.15:58072] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.39"] [uri "/.env"] [unique_id "Z04AYhidBEo54PZSnbWvSQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 18:14:14
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 13:14:08.193785 2024] [security2:error] [pid 1917:tid 1917] [client 165.227.233.15:41980] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.245"] [uri "/.env"] [unique_id "Z0348Ozk-tCQwG1_bXdZdQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-12-02 17:56:33
(1 year ago)
Bot / scanning and/or hacking attempts: GET / HTTP/1.0, GET /.env HTTP/1.1
Hacking
Web App Attack
๐ณ๐ฑ
ParaBug
2024-12-02 17:45:18
(1 year ago)
165.227.233.15 - - [02/Dec/2024:18:45:18 +0100] "GET /.env HTTP/1.1" 403 2930 "-" "Mozilla/5.0 Keydr ...
show more
165.227.233.15 - - [02/Dec/2024:18:45:18 +0100] "GET /.env HTTP/1.1" 403 2930 "-" "Mozilla/5.0 Keydrop"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 17:32:54
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 12:32:51.249690 2024] [security2:error] [pid 3638702:tid 3638702] [client 165.227.233.15:56344] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.199"] [uri "/.env"] [unique_id "Z03vQ9k5kP7xYPIJDRYxHQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 17:16:55
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 12:16:50.576838 2024] [security2:error] [pid 31726:tid 31726] [client 165.227.233.15:33626] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.118"] [uri "/.env"] [unique_id "Z03rgqTDOzVqhiXEkbYk9AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 16:55:13
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 11:55:06.673001 2024] [security2:error] [pid 870138:tid 870138] [client 165.227.233.15:53900] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.101"] [uri "/.env"] [unique_id "Z03magZ41p_F0d1YjKLSEgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 16:24:17
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 11:24:09.979290 2024] [security2:error] [pid 1482871:tid 1482871] [client 165.227.233.15:45348] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.158"] [uri "/.env"] [unique_id "Z03fKXb0x5uYNE8N1R5lVwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
dzpk
2024-12-02 15:45:01
(1 year ago)
165.227.233.15 - - [02/Dec/2024:16:44:59 +0100] "GET /.env HTTP/1.1" 400 248 "-" "Mozilla/5.0 Keydro ...
show more
165.227.233.15 - - [02/Dec/2024:16:44:59 +0100] "GET /.env HTTP/1.1" 400 248 "-" "Mozilla/5.0 Keydrop"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 15:42:22
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 165.227.233.15 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 10:42:17.247062 2024] [security2:error] [pid 17659:tid 17659] [client 165.227.233.15:59774] [client 165.227.233.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.172"] [uri "/.env"] [unique_id "Z03VWXXVgAbFXDOArbBzhAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2024-12-02 15:25:08
(1 year ago)
Login credentials theft attempt
Hacking