๐ซ๐ท
dynamix
2026-06-07 18:35:40
(2 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 17:28:50
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 13:28:46.216528 2026] [security2:error] [pid 26151:tid 26151] [client 18.234.159.78:36502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.151"] [uri "/.git/config"] [unique_id "aiWqTsoMDh2LGLYQdbXXbwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
SkyDancer
2026-06-07 14:28:18
(6 hours ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-06 10:13:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 06:13:40.633759 2026] [security2:error] [pid 29803:tid 29803] [client 18.234.159.78:56730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "palumbodesigns.com"] [uri "/.git/config"] [unique_id "aiPy1FxP7d7oE1M8hF4mvQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-06 08:25:10
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐บ๐ธ
kosada.com
2026-06-06 08:14:37
(1 day ago)
Web vulnerability probing: /.git/config
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-06 08:04:59
(1 day ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-06 07:05:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 03:05:31.503602 2026] [security2:error] [pid 6976:tid 6976] [client 18.234.159.78:45350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pagewideprinting.com"] [uri "/.git/config"] [unique_id "aiPGuz5VQ3qHfzlPqiCtYQAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 06:00:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 02:00:06.849769 2026] [security2:error] [pid 23240:tid 23316] [client 18.234.159.78:60798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paidsearchconsulting.com"] [uri "/.git/config"] [unique_id "aiO3Zt0tiAokie6AIxcvhQAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-06-06 05:36:03
(1 day ago)
18.234.159.78 - - [06/Jun/2026:07:35:59 +0200] "GET /.git/config HTTP/1.1" 403 5131 "-" "python-requ ...
show more
18.234.159.78 - - [06/Jun/2026:07:35:59 +0200] "GET /.git/config HTTP/1.1" 403 5131 "-" "python-requests/2.25.1"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 04:14:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 00:14:31.668918 2026] [security2:error] [pid 7725:tid 7725] [client 18.234.159.78:46362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pages4you.com"] [uri "/.git/config"] [unique_id "aiOep_PaptMf8hSrUKhHMwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-06 04:12:30
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 18.234.159.78 (US/United States/ec2 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 18.234.159.78 (US/United States/ec2-18-234-159-78.compute-1.amazonaws.com): 2 in the last 3600 secs
show less
Web App Attack
Anonymous
2026-06-06 04:10:45
(1 day ago)
18.234.159.78 - - [06/Jun/2026:04:10:44 +0000] "GET /.git/config HTTP/1.1" 404 44378 "-" "python-req ...
show more
18.234.159.78 - - [06/Jun/2026:04:10:44 +0000] "GET /.git/config HTTP/1.1" 404 44378 "-" "python-requests/2.25.1"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-06-06 01:47:11
(1 day ago)
[osotir.org] httpd-suspicious-path: sites=osotir.gr,osotir.org; logs=/var/log/httpd/domains/osotir.g ...
show more
[osotir.org] httpd-suspicious-path: sites=osotir.gr,osotir.org; logs=/var/log/httpd/domains/osotir.gr.log,/var/log/httpd/domains/osotir.org.log; samples=/.git/config
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 01:31:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 18.234.159.78 (ec2-18-234-159-78.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 21:31:12.088129 2026] [security2:error] [pid 26268:tid 26268] [client 18.234.159.78:36700] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ospreylake.org"] [uri "/.git/config"] [unique_id "aiN4YIYnPzSnnxgUU4zGHQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack