๐ซ๐ท
tecnicorioja
2026-09-12 22:00:55
(3 weeks ago)
(Mod_security)
Web App Attack
Brute-Force
Bad Web Bot
๐ซ๐ท
mrcrassi
2026-09-12 21:52:59
(3 weeks ago)
Triggered Cloudflare WAF (firewallManaged) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST met ...
show more
Triggered Cloudflare WAF (firewallManaged) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
Felisse
2026-09-12 21:50:44
(3 weeks ago)
CrowdSec ban: LePresidente/http-generic-403-bf (duration: 59h59m36s)
Web App Attack
๐บ๐ธ
[email protected]
2026-09-12 20:47:45
(3 weeks ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-12T20:47:45Z
Brute-Force
๐บ๐ธ
cwytech
2026-09-12 20:37:28
(3 weeks ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/rdg-local-lockdown-high.
Bad Web Bot
Web App Attack
๐จ๐ฆ
Sakusen
2026-09-12 20:04:20
(3 weeks ago)
Automated web attack: 9 reqs, 1 paths probed; probed: 1 .env
Hacking
Web App Attack
๐ซ๐ฎ
mnazibo
2026-09-12 20:00:40
(3 weeks ago)
Date: Sep 12 22:49:54 2026 EAT | Reported IP: 167.71.6.60 mod_security | id: 933160 934100 934130 94 ...
show more
Date: Sep 12 22:49:54 2026 EAT | Reported IP: 167.71.6.60 mod_security | id: 933160 934100 934130 942550 949110 200002 920270 920450 920540 922130 932140 932380 | NL/usernameab.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; PHP Injection Attack: High-Risk PHP Function Call Found; Node.js Injection Attack 1/2; Node.js Injection Attack 1/2; Node.js Injection Attack 1/2; Node.js Injection Attack 1/2; JavaScript Prototype Pollution; JavaScript Prototype Pollution; JavaScript Prototype Pollution; JSON-Based SQL Injection; Inbound Anomaly Score Exceeded (Total Score: 45); Failed to parse request body.; Invalid character in request (null character); Invalid character in request (null character); HTTP header is restricted by policy (/content-encoding/); Possible Unicode character bypass detected; Possible Unicode character bypass detected; Possible Unicode character bypass detected; Multipart header contains char
show less
SQL Injection
Brute-Force
Bad Web Bot
Anonymous
2026-09-12 19:31:47
(3 weeks ago)
[Sat Sep 12 21:31:47.263887 2026] [authz_core:error] [pid 486809] [client 167.71.6.60:49256] AH01630 ...
show more
[Sat Sep 12 21:31:47.263887 2026] [authz_core:error] [pid 486809] [client 167.71.6.60:49256] AH01630: client denied by server configuration: /var/www/html/portfolio/public/, referer: https://portfolio.curio.codes/
[Sat Sep 12 21:31:47.270650 2026] [authz_core:error] [pid 486809] [client 167.71.6.60:49256] AH01630: client denied by server configuration: /var/www/html/portfolio/public/, referer: https://portfolio.curio.codes/
[Sat Sep 12 21:31:47.275584 2026] [authz_core:error] [pid 486809] [client 167.71.6.60:49256] AH01630: client denied by server configuration: /var/www/html/portfolio/public/, referer: https://portfolio.curio.codes/
[Sat Sep 12 21:31:47.277737 2026] [authz_core:error] [pid 486809] [client 167.71.6.60:49256] AH01630: client denied by server configuration: /var/www/html/portfolio/public/, referer: https://portfolio.curio.codes/
[Sat Sep 12 21:31:47.285580 2026] [authz_core:error] [pid 486809] [client 167.71.6.60:49256] AH01630: client denied by server configuration: /va
...
show less
Web App Attack
๐ซ๐ท
GoodOldTOS
2026-09-12 18:43:57
(3 weeks ago)
Highly suspect IP
Hacking
Web App Attack
๐ต๐ฑ
Roper123
2026-09-12 18:07:09
(3 weeks ago)
Web app exploits
Web App Attack
๐บ๐ธ
[email protected]
2026-09-12 17:57:42
(3 weeks ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-12T17:57:42Z
Brute-Force
๐ซ๐ท
Phenix Info
2026-09-12 17:44:23
(3 weeks ago)
SmallGuard.fr/Prestashop Massive 403
Web App Attack
๐จ๐ฆ
dbgroupe
2026-09-12 17:36:07
(3 weeks ago)
12/Sep/2026:13:36:05.012592Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 167.71 ...
show more
12/Sep/2026:13:36:05.012592Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 167.71.6.60] ModSecurity: Warning. Pattern match "(?:;|\\\\\\\\{|\\\\\\\\||\\\\\\\\|\\\\\\\\||&|&&|\\\\\\\\n|\\\\\\\\r|\\\\\\\\$\\\\\\\\(|\\\\\\\\$\\\\\\\\(\\\\\\\\(|`|\\\\\\\\${|<\\\\\\\\(|>\\\\\\\\(|\\\\\\\\(\\\\\\\\s*\\\\\\\\))\\\\\\\\s*(?:{|\\\\\\\\s*\\\\\\\\(\\\\\\\\s*|\\\\\\\\w+=(?:[^\\\\\\\\s]*|\\\\\\\\$.*|\\\\\\\\$.*|<.*|>.*|\\\\\\\\'.*\\\\\\\\'|\\\\".*\\\\")\\\\\\\\s+|!\\\\\\\\s*|\\\\\\\\$)*\\\\\\\\s*(?:'|\\\\")*(?:[\\\\\\\\?\\\\\\\\*\\\\\\\\[\\\\\\\\]\\\\\\\\(\\\\\\\\)\\\\\\\\-\\\\\\\\|+\\\\\\\\w'\\\\"\\\\\\\\./\\\\\\\\\\\\\\\\]+/)?[\\\\\\\\\\\\\\\\'\\\\"]*(?:s[\\\\\\\\\\\\\\\\'\\\\"]* ..." at ARGS:$ACTION_7c0c15:1. [file "/usr/share/modsecurity-crs/rules/REQUEST-932-APPLICATION-ATTACK-RCE.conf"] [line "158"] [id "932105"] [msg "Remote Command Execution: Unix Command Injection"] [data "Matched Data: {timeout found within ARGS:$ACTION_7c0c15:1: {\\\\x22075b8fa80d\\\\x22:\\\\x22\\\\x22
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
omc
2026-09-12 17:34:11
(3 weeks ago)
Unauthorized file [PP].
Bad Web Bot
๐บ๐ธ
omc
2026-09-12 17:34:11
(3 weeks ago)
ModSecurity: Malformed multipart/form-data request missing boundary.
Bad Web Bot
Web App Attack