Anonymous
2026-06-09 15:52:54
(2 weeks ago)
/.env
Web App Attack
๐ซ๐ท
geot
2026-06-09 10:32:55
(2 weeks ago)
HEAD /.git-credentials HTTP/1.1
HEAD /app/settings.py HTTP/1.1
Hacking
Web App Attack
๐ณ๐ฑ
JCB
2026-06-09 07:47:00
(2 weeks ago)
193.42.57.143 - - [08/Jun/2026:15:12:03 +0300] "HEAD /secrets.json.swp HTTP/1.1" 404 - "-" "Mozilla/ ...
show more
193.42.57.143 - - [08/Jun/2026:15:12:03 +0300] "HEAD /secrets.json.swp HTTP/1.1" 404 - "-" "Mozilla/5.0 (compatible; WhiteWebSecurity/1.0; +https://whitewebsecurity.com; [email protected] )"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:00:17
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-07.
show less
Web App Attack
SSH
Hacking
Anonymous
2026-06-08 18:21:34
(2 weeks ago)
/.env.swo
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-08 15:06:25
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ต๐ฑ
dzpk
2026-06-08 14:30:14
(2 weeks ago)
[08/Jun/2026:16:27:02 +0200] 178092882223.954026 193.42.57.143 37997 HOST 80 [08/Jun/2026:16:29:45 + ...
show more
[08/Jun/2026:16:27:02 +0200] 178092882223.954026 193.42.57.143 37997 HOST 80 [08/Jun/2026:16:29:45 +0200] 178092898581.890964 193.42.57.143 43629 HOST 80 [08/Jun/2026:16:30:13 +0200] 178092901383.860028 193.42.57.143 38857 HOST 80
show less
Web App Attack
Anonymous
2026-06-08 13:36:06
(2 weeks ago)
Bot / scanning and/or hacking attempts: HEAD /.env.swp HTTP/1.1
Hacking
Web App Attack
๐ท๐บ
Reaper
2026-06-08 13:25:35
(2 weeks ago)
HEAD /admin/config.php
Web App Attack
๐ช๐ธ
el-brujo
2026-06-08 12:39:23
(2 weeks ago)
Cloudflare WAF: Request Path: /.idea/webServers.xml Request Query: Host: foro.elhacker.net userAgen ...
show more
Cloudflare WAF: Request Path: /.idea/webServers.xml Request Query: Host: foro.elhacker.net userAgent: Mozilla/5.0 (compatible; WhiteWebSecurity/1.0; +https://whitewebsecurity.com; [email protected] ) Action: block Source: firewallManaged ASN Description: HostRoyale Technologies Pvt Ltd Country: GB Method: HEAD Timestamp: 2026-06-08T12:39:23Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ซ๐ท
Donovan
2026-06-08 12:16:14
(2 weeks ago)
Web scan/exploit blocked by fail2ban on commitshift.fr - jail: npm-scan - 1 attempt(s)
Web App Attack
๐ซ๐ท
bazter.pro
2026-06-08 12:07:07
(2 weeks ago)
Auto-Ban [2026-06-08 15:06:53]: CRITICAL: .env attack; DC: HostRoyale Technologies Pvt Ltd [Paths: 2 ...
show more
Auto-Ban [2026-06-08 15:06:53]: CRITICAL: .env attack; DC: HostRoyale Technologies Pvt Ltd [Paths: 29] | Details: Exploit trap paths: /wordpress/wp-config.php, /.env.dev, /.env.prod, /.env.example, /wp-config.php.swp | Sensitive files/paths: /.secrets.swp, /wordpress/wp-config.php, /application.properties.swp, /sftp-config.json, /settings_local.py.swp | 404 errors (22): /hibernate.cfg.xml, /config.php, /server.key, /credentials.json, /.settings.php.swp, /configuration.php, /wordpress/wp-config.php, /sftp-config.json, /composer.auth.json, /application.properties.swp (and 10 more) | 403 errors (4): /.env.dev, /settings_local.py.swp, /.env.example, /.env.prod | Other paths: /core/settings.py, /config.inc.php, /LocalSettings.php, /k8s.yml, /settings/local.py
show less
Web App Attack
Hacking
๐ซ๐ท
Coco Bongo
2026-06-08 11:50:34
(2 weeks ago)
193.42.57.143 [redacted].contaboserver.net (207990-HostRoyale Technologies Pvt Ltd United Kingdom -) ...
show more
193.42.57.143 [redacted].contaboserver.net (207990-HostRoyale Technologies Pvt Ltd United Kingdom -) - - [08/Jun/2026:13:49:46 +0200] "HEAD /.config.php.swp HTTP/1.1" 404 0 "-" "Mozilla/5.0 (compatible
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-08 11:37:36
(2 weeks ago)
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .b ...
show more
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .backup/ .bak/ .bck/ .bk/ .bkp/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .cnf/ .com/ .compositefont/ .config/ .conf/ .copy/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll/ .dos/ .dpkg-dist/ .drv/ .gadget/ .hta/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .inf/ .ini/ .jks/ .jse/ .key/ .licx/ .lnk/ .log/ .mdb/ .msc/ .ocx/ .old/ .pass/ .pdb/ .pfx/ .pif/ .pem/ .pol/ .prf/ .printer/ .pwd/ .rdb/ .rdp/ .reg/ .resources/ .resx/ .sav/ .save/ .scr/ .sct/ .sh/ .shs/ .sql/ .sqlite/ .sqlite3/ .swap/ .swo/ .swp/ .sys/ .temp/ .tfstate/ .tlb/ .tmp/ .vb/ .vbe/ .vbs/ .vbproj/ .vsdisco/ .vxd/ .webinfo/ .ws/ .wsc/ .wsf/ .wsh/ .xsd/ .xsx/" at TX:extension. (920440-193)
show less
Hacking
๐ซ๐ท
LoneRider
2026-06-08 11:36:36
(2 weeks ago)
[08/Jun/2026:13:33:36.218466 +0200] aiaokI-xeAltHsBMp0xX3wAAAAM 193.42.57.143 59386 127.0.0.1 7081
[ ...
show more
[08/Jun/2026:13:33:36.218466 +0200] aiaokI-xeAltHsBMp0xX3wAAAAM 193.42.57.143 59386 127.0.0.1 7081
[08/Jun/2026:13:35:11.553783 +0200] aiao73S2tXG_yXGjmQln9gAAAAI 193.42.57.143 48550 127.0.0.1 7081
[08/Jun/2026:13:36:36.014120 +0200] aiapRIOROfDxght8XttrZAAAAAA 193.42.57.143 39998 127.0.0.1 7080
...
show less
Hacking