๐ฉ๐ช
ghostwarriors
2026-08-23 16:51:28
(1 hour ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-08-23 05:15:05
(13 hours ago)
8 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ง๐ท
dominioz
2026-08-22 21:29:17
(21 hours ago)
2026-08-22 18:28:13 GET /.git/config - - 204.48.20.243 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+Appl ...
show more
2026-08-22 18:28:13 GET /.git/config - - 204.48.20.243 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 459
2026-08-22 18:28:14 GET /.git/config - - 204.48.20.243 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 554
2026-08-22 21:28:46 GET /.git/config - - 204.48.20.243 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 459
2026-08-22 21:28:48 GET /.git/config - - 204.48.20.243 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 554
...
show less
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-22 20:42:02
(21 hours ago)
Fail2Ban - [WAF]ModSecurity rule violation on modsecurity ... [wa02]
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
kivitendo.de
2026-08-22 18:24:58
(1 day ago)
[Sat Aug 22 00:58:53.694173 2026] [access_compat:error] [pid 272075:tid 272078] [client 204.48.20.24 ...
show more
[Sat Aug 22 00:58:53.694173 2026] [access_compat:error] [pid 272075:tid 272078] [client 204.48.20.243:53306] AH01797: client denied by server configuration: /var/www/kivitendo-erp-git/.git/config
[Sat Aug 22 20:25:08.195188 2026] [access_compat:error] [pid 275481:tid 275520] [client 204.48.20.243:43888] AH01797: client denied by server configuration: /var/www/kivitendo-erp-git/.git/config
...
show less
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-08-22 18:11:53
(1 day ago)
[SatAug2220:11:47.0075722026][security2:error][pid3526318:tid3526603][client204.48.20.243:0]ModSecur ...
show more
[SatAug2220:11:47.0075722026][security2:error][pid3526318:tid3526603][client204.48.20.243:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"edomustech.com\"][uri\"/.git/config\"][unique_id\"aonmY3BUAGJ8fDwHV3IyywAAANY\"]
show less
Hacking
Web App Attack
๐ท๐ด
iulianh
2026-08-22 17:05:18
(1 day ago)
80,443
Brute-Force
SSH
๐ซ๐ฎ
paissangroup
2026-08-22 17:03:27
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ท๐บ
Albram
2026-08-22 16:53:49
(1 day ago)
Tries find Web server vulnerability
...
Hacking
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-22 15:08:36
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 204.48.20.243 (US/United States/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 204.48.20.243 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-22 13:50:04
(1 day ago)
Fail2Ban - [WAF]ModSecurity rule violation on modsecurity ... [wa01]
Hacking
SQL Injection
Web App Attack
Anonymous
2026-08-22 13:22:24
(1 day ago)
204.48.20.243 - - [22/Aug/2026:15:22:23 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ...
show more
204.48.20.243 - - [22/Aug/2026:15:22:23 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-22 12:03:11
(1 day ago)
csagent: score 20.3: secrets grab x2, 404 noise floor x2; 2 domain(s) in 3s
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 10:32:43
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: astropot.tech | URI: /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 10:01:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 204.48.20.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 204.48.20.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 06:01:04.051652 2026] [security2:error] [pid 20555:tid 20555] [client 204.48.20.243:52002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thenolangroup.llc"] [uri "/.git/config"] [unique_id "aolzYDA7it6NCedklG85gQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack