๐บ๐ธ
IndigoRidge
2026-10-09 23:12:12
(16 hours ago)
198.251.68.213 - - [09/Oct/2026:19:12:10 -0400] "GET /wp-content/plugins/wordpress-seo/readme.txt HT ...
show more
198.251.68.213 - - [09/Oct/2026:19:12:10 -0400] "GET /wp-content/plugins/wordpress-seo/readme.txt HTTP/1.1" 403 140 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
198.251.68.213 - - [09/Oct/2026:19:12:10 -0400] "GET /wp-content/plugins/wordpress-seo/README.txt HTTP/1.1" 403 140 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
198.251.68.213 - - [09/Oct/2026:19:12:11 -0400] "GET /wp-content/plugins/wordpress-seo/Readme.txt HTTP/1.1" 403 140 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
198.251.68.213 - - [09/Oct/2026:19:12:11 -0400] "GET /wp-content/plugins/wordpress-importer/readme.txt HTTP/1.1" 403 140 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
198.251.68.213 - - [09/Oct/2026:19:12:12 -0400] "GET /wp-co
...
show less
Web App Attack
๐ง๐ช
cmbplf
2026-10-09 18:41:29
(20 hours ago)
167 requests with url.path */wp-comments-post.php
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Savvii
2026-09-23 19:06:48
(2 weeks ago)
10 attempts against mh-mag-customerspam-ban on onion
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-23 16:14:32
(2 weeks ago)
20 attempts against mh-misbehave-ban on onion
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2021-08-24 09:59:58
(5 years ago)
[23/Aug/2021:06:41:03 -0400] \"GET /.env HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/53 ...
show more
[23/Aug/2021:06:41:03 -0400] \"GET /.env HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36\"
[23/Aug/2021:06:41:05 -0400] \"POST / HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36\"
[23/Aug/2021:06:41:08 -0400] \"GET /.env HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36\"
[23/Aug/2021:06:41:10 -0400] \"POST / HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36\"
show less
Hacking
๐ฆ๐บ
Ross Wheatley
2021-08-23 15:15:41
(5 years ago)
GET /.env HTTP/1.1 404 5817 - Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) ...
show more
GET /.env HTTP/1.1 404 5817 - Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
show less
Brute-Force
Web App Attack
๐ซ๐ท
security.rdmc.fr
2021-08-23 10:20:25
(5 years ago)
Automatic report - Banned IP Access
Web App Attack
๐ฎ๐ฉ
hermawan
2021-08-23 07:45:31
(5 years ago)
[Mon Aug 23 13:45:29.037192 2021] [:error] [pid 641759:tid 140056056522496] [client 198.251.68.213:5 ...
show more
[Mon Aug 23 13:45:29.037192 2021] [:error] [pid 641759:tid 140056056522496] [client 198.251.68.213:58633] [client 198.251.68.213] ModSecurity: Access denied with code 403 (phase 2). Pattern match "^[\\\\d.:]+$" at REQUEST_HEADERS:Host. [file "/etc/modsecurity/coreruleset-3.3.2/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "773"] [id "920350"] [msg "Host header is a numeric IP address"] [data "103.27.207.197"] [severity "WARNING"] [ver "OWASP_CRS/3.3.2"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [hostname "103.27.207.197"] [uri "/.env"] [unique_id "YSOKWXUBk-r-y5ycNEryPwAAAE0"]
...
show less
Hacking
Web App Attack
๐ฉ๐ช
debaba
2021-08-22 13:14:44
(5 years ago)
Brute-Force
Web App Attack
๐ฉ๐ช
zeitschel.net
2021-08-22 08:33:38
(5 years ago)
2021-08-22 14:33:36 multiple 404 on /.env
Hacking
Web App Attack
๐ฆ๐บ
Ross Wheatley
2021-08-22 05:51:21
(5 years ago)
GET /.env HTTP/1.1 404 5673 - Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) ...
show more
GET /.env HTTP/1.1 404 5673 - Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
show less
Brute-Force
Web App Attack
๐บ๐ธ
HJ5Ss4Ju
2021-08-22 03:40:03
(5 years ago)
Forbidden directory scan :: 2021/08/22 07:40:03 [error] 943#943: *93657 access forbidden by rule, cl ...
show more
Forbidden directory scan :: 2021/08/22 07:40:03 [error] 943#943: *93657 access forbidden by rule, client: 198.251.68.213, server: [censored_1], request: "GET /.env HTTP/1.1", host: "142.93.66.17"
show less
Hacking
๐บ๐ธ
MortimerCat
2021-08-22 02:24:37
(5 years ago)
Attempting to download environment file
Web App Attack
๐บ๐ธ
ut-addicted.com
2021-08-22 02:09:57
(5 years ago)
\[22/Aug/2021:08:09:53 +0200\] YSHqMRrXLpMhJ7rN6027-gAAANQ 198.251.68.213 50212 172.31.1.100 80
\[22 ...
show more
\[22/Aug/2021:08:09:53 +0200\] YSHqMRrXLpMhJ7rN6027-gAAANQ 198.251.68.213 50212 172.31.1.100 80
\[22/Aug/2021:08:09:54 +0200\] YSHqMRrXLpMhJ7rN6027-wAAAMU 198.251.68.213 50265 172.31.1.100 80
\[22/Aug/2021:08:09:55 +0200\] YSHqMxrXLpMhJ7rN6028AAAAAMM 198.251.68.213 50351 172.31.1.100 443
show less
Brute-Force
Web App Attack
Anonymous
2021-08-21 22:08:22
(5 years ago)
[Sat Aug 21 22:08:20.967566 2021] [:error] [pid 22762] [client 198.251.68.213] ModSecurity: Access d ...
show more
[Sat Aug 21 22:08:20.967566 2021] [:error] [pid 22762] [client 198.251.68.213] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 8)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.2.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "[mungedIP2]"] [uri "/.env"] [unique_id "YSGxlH8AAAEAAFjqUyMAAAAK"]
[Sat Aug 21 22:08:22.228059 2021] [:error] [pid 22969] [client 198.251.68.213] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 8)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.2.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-gene
show less
Bad Web Bot
Web App Attack