🇵🇱
Budyn
2026-09-09 19:50:47
(3 minutes ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: api.teddypot.site | URI: /.env | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇵🇱
Budyn
2026-09-09 12:22:18
(7 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: dev.goblinpot.space | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇦🇺
Klaverstyn
2026-09-09 09:26:55
(10 hours ago)
Repeated 403 Forbidden responses
Web App Attack
🇩🇪
maxpower
2026-09-09 08:32:47
(11 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 176.111.37.216 (HK/Hong Kong/-): 1 in th ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 176.111.37.216 (HK/Hong Kong/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 176.111.37.216 - - [09/Sep/2026:10:32:45 +0200] "GET /.aws/credentials HTTP/1.1" 200 12214 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" host=insegnesolution.it.emmeccisolution.it
show less
Port Scan
🇵🇱
Budyn
2026-09-09 07:36:10
(12 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: minio.teddypot.cloud | URI: /.aws/credentials | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-09-09 05:13:47
(14 hours ago)
Try to access /.env
Web App Attack
🇩🇪
maxpower
2026-09-09 04:50:58
(15 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 176.111.37.216 (HK/Hong Kong/-): 1 in th ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 176.111.37.216 (HK/Hong Kong/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 176.111.37.216 - - [09/Sep/2026:06:50:52 +0200] "GET /.aws/credentials HTTP/1.1" 200 12085 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" host=mail.insegnesolution.it
show less
Port Scan
🇵🇱
Budyn
2026-09-09 03:30:39
(16 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: minio.teddypot.pro | URI: /.aws/credentials | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇸🇬
pusathosting.com
2026-09-09 01:30:04
(18 hours ago)
24ds22 bruteforce
Brute-Force
Web App Attack
🇩🇪
FeG Deutschland
2026-09-09 00:37:14
(19 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇵🇱
Budyn
2026-09-08 21:56:31
(21 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: apm.astropot.online | URI: /.env | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-08 21:29:31
(22 hours ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /.aws/credentials | 2026-09-08 ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /.aws/credentials | 2026-09-08 21:29 UTC
show less
Port Scan
Web App Attack
🇫🇷
GoodOldTOS
2026-09-08 20:49:32
(23 hours ago)
Highly suspect IP
Hacking
Web App Attack
🇩🇪
LRob
2026-09-08 20:21:06
(23 hours ago)
Asking over plain http and never following the redirect served — a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served — a crawler that reads nothing it asks for | method: GET | path: /wp-json/wp/v2/posts | 2026-09-08 20:21 UTC
show less
Bad Web Bot
🇮🇹
CoreTech srl
2026-09-08 17:38:56
(1 day ago)
cloudlinux2 fail2ban: 2026-09-08 19:34:01,501 fail2ban.filter [1794]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-08 19:34:01,501 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 85.138.29.30 - 2026-09-08 19:34:01cloudlinux2 fail2ban: 2026-09-08 19:34:17,617 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 142.111.152.40 - 2026-09-08 19:34:16cloudlinux2 fail2ban: 2026-09-08 19:34:36,520 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 142.111.152.46 - 2026-09-08 19:34:35cloudlinux2 fail2ban: 2026-09-08 19:34:35,976 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 176.111.37.216 - 2026-09-08 19:34:35cloudlinux2 fail2ban: 2026-09-08 19:35:00,546 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 155.2.215.50 - 2026-09-08 19:35:00cloudlinux2 fail2ban: 2026-09-08 19:34:56,427 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 155.2.215.50 - 2026-09-08 19:34:55cloudlinux2 fail2ban: 2026-09-08 19:35:10,057 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 37.140.223.53 - 2026-09-08 19:35:08cloudli
show less
Web App Attack