🇹🇷
neron
2026-09-11 00:55:33
(7 hours ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-09-09 00:55:33
(2 days ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-09-07 00:55:33
(4 days ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-09-06 00:55:33
(5 days ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-09-03 00:48:47
(1 week ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-08-22 03:21:51
(2 weeks ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-08-22 02:35:35
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.comp ...
show more
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 22:35:31.738903 2026] [security2:error] [pid 14633:tid 14633] [client 18.225.25.214:55512] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||commonthreadsvt.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "commonthreadsvt.org"] [uri "/mailto:[email protected] "] [unique_id "aokK81gF-XtyNSIYPwnffwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇹🇷
neron
2026-08-19 04:26:21
(3 weeks ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-08-11 15:38:45
(4 weeks ago)
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.comp ...
show more
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 11:38:39.629353 2026] [security2:error] [pid 3071081:tid 3071081] [client 18.225.25.214:24508] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.uwsdiving.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.uwsdiving.com"] [uri "/mailto:[email protected] "] [unique_id "antB_xGG_6oM25GXPogQkwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇹🇷
neron
2026-08-11 03:06:50
(1 month ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-07-30 03:06:20
(1 month ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
🇹🇷
neron
2026-07-26 11:20:48
(1 month ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
Anonymous
2026-07-16 08:11:00
(1 month ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
🇺🇸
TPI-Abuse
2026-06-29 21:41:53
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.comp ...
show more
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 17:41:46.228218 2026] [security2:error] [pid 31967:tid 31967] [client 18.225.25.214:54880] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||commonthreadsvt.org|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "commonthreadsvt.org"] [uri "/mailto:[email protected] @gmail.com"] [unique_id "akLmmlrGfMAp8f13y_AVWgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-25 16:37:16
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.comp ...
show more
(mod_security) mod_security (id:210730) triggered by 18.225.25.214 (ec2-18-225-25-214.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 12:37:07.397533 2026] [security2:error] [pid 31726:tid 31726] [client 18.225.25.214:14737] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.uwsdiving.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.uwsdiving.com"] [uri "/mailto:[email protected] "] [unique_id "aj1ZM8f9MsSuK5zB-VRfxAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack