๐ธ๐ช
vaia.cloud
2026-07-27 11:50:02
(15 minutes ago)
crowdsecurity/http-crawl-non_statics
Brute-Force
Web App Attack
๐ณ๐ฟ
Antinson
2026-07-27 11:13:06
(52 minutes ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-27 10:14:47
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.co ...
show more
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 06:14:41.802826 2026] [security2:error] [pid 4133107:tid 4133107] [client 18.202.233.132:52542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "evelynkay.com"] [uri "/.git/config"] [unique_id "amcvkQld3tY7FsoSgGxB0QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 09:50:19
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.co ...
show more
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 05:50:13.418788 2026] [security2:error] [pid 4180157:tid 4180157] [client 18.202.233.132:59140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "evelia.com"] [uri "/.git/config"] [unique_id "amcp1ehbHIWx0SWPPSdq9gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-07-27 07:58:14
(4 hours ago)
Web scanning / probing for vulnerable paths | URL: /jenkins/.env | Evidence: evatourviagens.com.br 1 ...
show more
Web scanning / probing for vulnerable paths | URL: /jenkins/.env | Evidence: evatourviagens.com.br 18.202.233.132 - - [27/Jul/2026:09:57:25 +0200] \"GET /jenkins/.env HTTP/1.1\" 404 20745 \"-\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=IE | ASN: AMAZON-02 | Country: IE
show less
Port Scan
Web App Attack
๐ซ๐ท
dynamix
2026-07-27 06:26:51
(5 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 06:26:44
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.co ...
show more
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 02:26:40.825049 2026] [security2:error] [pid 947589:tid 947589] [client 18.202.233.132:52914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "evannine.com"] [uri "/.git/config"] [unique_id "amb6IB4rzgEFF5X3LzurrAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 05:28:56
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.co ...
show more
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 01:28:51.456937 2026] [security2:error] [pid 1321783:tid 1321851] [client 18.202.233.132:36330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "evan-hotel.com"] [uri "/.git/config"] [unique_id "ambsk7TRgBITUG-sQSiRaQAAAcQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-07-27 04:16:31
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 18.202.233.132 (IE/Ireland/ec2-18-202-2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 18.202.233.132 (IE/Ireland/ec2-18-202-233-132.eu-west-1.compute.amazonaws.com)
show less
SQL Injection
๐ฎ๐น
VHosting
2026-07-27 04:15:04
(7 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-26 02:01:08
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 18.202.233.132 (IE/Ireland/Leinster/Dub ...
show more
(mod_security) mod_security triggered on hostname [redacted] 18.202.233.132 (IE/Ireland/Leinster/Dublin/ec2-18-202-233-132.eu-west-1.compute.amazonaws.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-07-24 10:44:43
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.co ...
show more
(mod_security) mod_security (id:210492) triggered by 18.202.233.132 (ec2-18-202-233-132.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 06:44:36.750448 2026] [security2:error] [pid 2513511:tid 2513511] [client 18.202.233.132:49522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adn-media.net"] [uri "/.git/config"] [unique_id "amNCFJNhepg12H_JOwz9gwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-23 22:23:32
(1 month ago)
IM360 WAF: Block system file path in request MV:../../../../../../etc/passwd\\x00
Web App Attack