๐บ๐ธ
mawan
2026-06-26 21:21:59
(12 hours ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-06-25 07:23:51
(2 days ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-06-20 10:55:58
(6 days ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-06-15 04:13:13
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฉ๐ช
todix
2026-05-09 08:55:26
(1 month ago)
Web App Attack Exploid from 172.69.176.24
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 13:59:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 09:59:04.550484 2026] [security2:error] [pid 30200:tid 30200] [client 172.69.176.24:12595] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ricardoagurcia.com.asociacioncopan.org"] [uri "/.git/config"] [unique_id "af3sKNk-CDKVgXUtl9_xdgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 10:37:59
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 06:37:54.006747 2026] [security2:error] [pid 1106:tid 1106] [client 172.69.176.24:12181] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hodges-web.com"] [uri "/.env.development.local"] [unique_id "af29AhhYNU9sIxupVzgVsQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 08:07:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 04:07:42.344267 2026] [security2:error] [pid 29838:tid 29838] [client 172.69.176.24:11737] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photo-craft.org"] [uri "/.env.vercel"] [unique_id "af2ZzvXiSK6jyF8gtaQ7wQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 02:39:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 22:38:55.601063 2026] [security2:error] [pid 9703:tid 9703] [client 172.69.176.24:10188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.sinko-intl.com"] [uri "/.env"] [unique_id "af1Mv3q6-9TRT4T5p7Q6AwAAAAU"], referer: https://www.google.com/search?q=autodiscover.sinko-intl.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-07 22:02:51
(1 month ago)
Auto-ban: >3000 req/min op 2026-05-07
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-07 12:32:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.176.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 08:32:15.647114 2026] [security2:error] [pid 19349:tid 19349] [client 172.69.176.24:12064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "professorjunk.com"] [uri "/.git/config"] [unique_id "afyGT5P4tmMyYiofhlqXmQAAAAA"], referer: https://www.google.com/search?q=professorjunk.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-07 09:57:48
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
www.mammazone.it
2026-04-28 01:42:42
(1 month ago)
[Tue Apr 28 03:42:42.622486 2026] [autoindex:error] [pid 2790916] [client 172.69.176.24:11793] AH012 ...
show more
[Tue Apr 28 03:42:42.622486 2026] [autoindex:error] [pid 2790916] [client 172.69.176.24:11793] AH01276: Cannot serve directory /var/www/fabiodirauso.it/.well-known/: No matching DirectoryIndex (index.html,index.cgi,index.pl,index.php,index.xhtml,index.htm) found, and server-generated directory index forbidden by Options directive
...
show less
Hacking
Web App Attack
๐บ๐ธ
mawan
2026-04-21 22:02:01
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-04-07 07:01:02
(2 months ago)
Access to sensitive configuration files detected.. Threat Score: 6.9/10 (MEDIUM). Reported by Tanger ...
show more
Access to sensitive configuration files detected.. Threat Score: 6.9/10 (MEDIUM). Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack