๐ฉ๐ช
Bedios GmbH
2026-06-07 12:11:26
(47 minutes ago)
Login credentials theft attempt
Hacking
๐ฉ๐ช
XICTRON
2026-06-07 12:05:06
(53 minutes ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐ซ๐ท
Baking333
2026-06-07 11:23:41
(1 hour ago)
[redacted] 194.11.155.211 - - [07/Jun/2026:12:23:40 +0100] "GET /.env HTTP/1.1" 302 5222 0/106859 "- ...
show more
[redacted] 194.11.155.211 - - [07/Jun/2026:12:23:40 +0100] "GET /.env HTTP/1.1" 302 5222 0/106859 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36" [redacted] 194.11.155.211 - - [07/Jun/2026:12:23:40 +0100] "GET /laravel/.env HTTP/1.1" 302 5222 0/78507 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36" [redacted] 194.11.155.211 - - [07/Jun/2026:12:23:40 +0100] "GET /dev/.env HTTP/1.1" 302 5238 0/131289 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-07 10:27:31
(2 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
kosada.com
2026-06-07 08:26:19
(4 hours ago)
Web vulnerability probing: /admin/.env (bogus vhost/SNI)
Web App Attack
๐ฉ๐ช
paissangroup
2026-06-07 08:14:15
(4 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 08:09:27
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 04:09:19.805849 2026] [security2:error] [pid 25403:tid 25403] [client 194.11.155.211:28910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "i-slim.net"] [uri "/member/.env"] [unique_id "aiUnL7TpcHNB5abtycreGgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 07:23:33
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 03:23:26.109943 2026] [security2:error] [pid 32355:tid 32355] [client 194.11.155.211:29162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calificacionyvalidacionsicav.com"] [uri "/api/.env"] [unique_id "aiUcbsfMuMrG-qP56T0WqwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 07:06:26
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 03:06:21.524864 2026] [security2:error] [pid 21987:tid 21987] [client 194.11.155.211:24884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "30daysout.com"] [uri "/app/.env"] [unique_id "aiUYbSXkezPm56p5qa_EBQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 04:36:01
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 00:35:54.195931 2026] [security2:error] [pid 26102:tid 26102] [client 194.11.155.211:23578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lasvegaskiss.com"] [uri "/api/.env"] [unique_id "aiT1KqeyeUoqYlJkRG-FpgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-07 03:02:03
(9 hours ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-07 02:46:11
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.11.155.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 22:46:06.488550 2026] [security2:error] [pid 20970:tid 20970] [client 194.11.155.211:61930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kathleenullmann.com"] [uri "/admin/.env"] [unique_id "aiTbbhAcykHrEgobIlO2lAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Matthew Ping
2026-06-07 02:45:01
(10 hours ago)
ModSecurity rule 949110 triggered on wp1. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐ฌ๐ง
consul.to
2026-06-07 01:30:39
(11 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-06-07 00:14:03
(12 hours ago)
Bot / scanning and/or hacking attempts: GET /laravel/.env HTTP/1.1, GET /backend/.env HTTP/1.1, GET ...
show more
Bot / scanning and/or hacking attempts: GET /laravel/.env HTTP/1.1, GET /backend/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /member/.env HTTP/1.1, GET /.env HTTP/1.1, GET /app/.env HTTP/1.1, GET /dev/.env HTTP/1.1
show less
Hacking
Web App Attack