๐ซ๐ท
geot
2026-08-24 11:43:15
(14 hours ago)
GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-23 23:12:38
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-23 22:00:16
(1 day ago)
Auto-ban: >3000 req/min op 2026-08-23
Web App Attack
SSH
Hacking
๐ฉ๐ช
4server
2026-08-23 21:53:40
(1 day ago)
[SunAug2323:53:34.2737142026][security2:error][pid168003:tid168028][client209.38.26.239:0]ModSecurit ...
show more
[SunAug2323:53:34.2737142026][security2:error][pid168003:tid168028][client209.38.26.239:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"modularss.com\"][uri\"/.git/config\"][unique_id\"aotr3uWo7wHNynptAi5EaAAAAAY\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฆ๐บ
Bay13
2026-08-23 19:39:41
(1 day ago)
CrowdSec:custom/http-sensitive-files
Web App Attack
๐ฌ๐ง
consul.to
2026-08-23 19:18:19
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 18:25:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 14:25:40.174367 2026] [security2:error] [pid 22016:tid 22016] [client 209.38.26.239:51592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "laurengardner.org"] [uri "/.git/config"] [unique_id "aos7JHJAZxXh8Ho1mcV8eAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
HamSammich
2026-08-23 17:18:29
(1 day ago)
Automated sensor: 1 HTTP connection/probe attempts over the last 24h (latest 2026-08-23T17:18Z).
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-08-23 14:16:58
(1 day ago)
[SunAug2316:16:55.7265192026][security2:error][pid3314846:tid3315039][client209.38.26.239:0]ModSecur ...
show more
[SunAug2316:16:55.7265192026][security2:error][pid3314846:tid3315039][client209.38.26.239:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"swisservers.com\"][uri\"/.git/config\"][unique_id\"aosA13r79xy-_rwukInI0wAAAEs\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 13:29:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 09:29:45.566107 2026] [security2:error] [pid 6742:tid 6742] [client 209.38.26.239:45530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qualityelevatorcabs.com"] [uri "/.git/config"] [unique_id "aor1yQ17JWg89ncuGzn7OQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 12:52:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 08:51:54.082491 2026] [security2:error] [pid 19656:tid 19656] [client 209.38.26.239:41910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lynetteharris.net"] [uri "/.git/config"] [unique_id "aors6ofrR9JGL1ue44-UxwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
diego
2026-08-23 12:15:44
(1 day ago)
[probe-68-69] 2026-08-23 11:57:08, Client: 209.38.26.239, Protocol: 6, Unauthorized activity to HTTP ...
show more
[probe-68-69] 2026-08-23 11:57:08, Client: 209.38.26.239, Protocol: 6, Unauthorized activity to HTTP: GET /.git/config
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 11:00:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 07:00:23.879787 2026] [security2:error] [pid 31120:tid 31120] [client 209.38.26.239:33196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paulpasquali.com"] [uri "/.git/config"] [unique_id "aorSxx_Qsi-V9sL44me57gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-08-23 10:44:44
(1 day ago)
209.38.26.239 - - [23/Aug/2026:10:55:31 +0200] "GET /.git/config HTTP/1.1" 302 517 "-" "Mozilla/5.0 ...
show more
209.38.26.239 - - [23/Aug/2026:10:55:31 +0200] "GET /.git/config HTTP/1.1" 302 517 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
209.38.26.239 - - [23/Aug/2026:10:55:33 +0200] "GET /.git/config HTTP/1.1" 302 5816 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
209.38.26.239 - - [23/Aug/2026:12:44:43 +0200] "GET /.git/config HTTP/1.1" 302 517 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 10:33:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.38.26.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 06:33:07.485876 2026] [security2:error] [pid 8320:tid 8320] [client 209.38.26.239:58458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "skotam.com"] [uri "/.git/config"] [unique_id "aorMY6zPiDZ-SNiYK6SAPQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack