๐ฉ๐ช
Hugopvigo
2026-07-27 02:15:25
(7 hours ago)
[Mon Jul 27 04:15:24.572583 2026] [authz_core:error] [pid 1769301:tid 132131950933696] [client 188.2 ...
show more
[Mon Jul 27 04:15:24.572583 2026] [authz_core:error] [pid 1769301:tid 132131950933696] [client 188.214.129.17:16297] AH01630: client denied by server configuration: /var/www/html/wordpress/.git
[Mon Jul 27 04:15:24.578987 2026] [authz_core:error] [pid 1769301:tid 132132615730880] [client 188.214.129.17:26497] AH01630: client denied by server configuration: /var/www/html/wordpress/.git
[Mon Jul 27 04:15:24.583833 2026] [authz_core:error] [pid 1769301:tid 132131707676352] [client 188.214.129.17:21495] AH01630: client denied by server configuration: /var/www/html/wordpress/.git
...
show less
Hacking
Brute-Force
Web App Attack
SSH
Anonymous
2026-07-27 02:15:00
(7 hours ago)
188.214.129.17 - - [27/Jul/2026:01:48:45 +0000] "GET /.git/index HTTP/1.1" 404 196 "-" "Mozilla/5.0 ...
show more
188.214.129.17 - - [27/Jul/2026:01:48:45 +0000] "GET /.git/index HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/137.0.0.0 Safari/537.36"
188.214.129.17 - - [27/Jul/2026:01:48:45 +0000] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/137.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-07-27 02:14:18
(7 hours ago)
188.214.129.17 - - [27/Jul/2026:04:14:17 +0200] "GET /.git/config HTTP/2.0" 301 169 "-" "Mozilla/5.0 ...
show more
188.214.129.17 - - [27/Jul/2026:04:14:17 +0200] "GET /.git/config HTTP/2.0" 301 169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/137.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 02:13:22
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 188.214.129.17 (ip-188-214-129-17.004.ptr.cherr ...
show more
(mod_security) mod_security (id:210492) triggered by 188.214.129.17 (ip-188-214-129-17.004.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 22:13:16.348574 2026] [security2:error] [pid 27104:tid 27104] [client 188.214.129.17:20329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "houstoun.me"] [uri "/.git/config"] [unique_id "ama-vCA5YE-I_28p-k5RdwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
infra-monitor
2026-07-27 02:00:06
(7 hours ago)
Automated ban via infra-monitor: suspicious-probe
Port Scan
๐ต๐พ
armandosaucedo.me
2026-07-27 01:47:37
(7 hours ago)
Threat Intelligence via ARMTI, Web Attack: GET /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 01:46:49
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 188.214.129.17 (ip-188-214-129-17.004.ptr.cherr ...
show more
(mod_security) mod_security (id:210492) triggered by 188.214.129.17 (ip-188-214-129-17.004.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 21:46:43.144877 2026] [security2:error] [pid 3998883:tid 3998883] [client 188.214.129.17:3253] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aarce.me"] [uri "/.git/HEAD"] [unique_id "ama4g42iUpkjzuaAjuszQAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-27 00:05:34
(9 hours ago)
Blocked: Reason='Vulnerability probing โ PHP scan detected (109/60 min)'; Requests=109
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-26 23:01:01
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 188.214.129.17 (ip-188-214-129-17.004.ptr.cherr ...
show more
(mod_security) mod_security (id:210492) triggered by 188.214.129.17 (ip-188-214-129-17.004.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 19:00:57.155693 2026] [security2:error] [pid 3534528:tid 3534528] [client 188.214.129.17:11888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.crazypencil.com"] [uri "/.env.staging"] [unique_id "amaRqWwqabLC6a54kNaJIgAAAAE"], referer: http://www.crazypencil.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-26 20:05:05
(13 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ต๐ฑ
lns.bz
2026-07-26 20:00:32
(13 hours ago)
Web app attack [PL.Lu]
Exploited Host
Web App Attack
๐ฎ๐น
VHosting
2026-07-26 20:00:04
(13 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-07-26 19:59:41
(13 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-07-26 19:59:13
(13 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฟ
Antinson
2026-07-26 17:07:20
(16 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot