๐ฉ๐ช
Goetz
2026-08-27 12:07:50
(4 days ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
๐บ๐ธ
lostswordfish.com
2026-08-09 11:54:04
(3 weeks ago)
Wordfence waf block on uvfousor WPIDD
Web App Attack
๐ซ๐ท
Sklurk
2026-07-30 00:58:19
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-29 00:18:13
(1 month ago)
Web App Attack
Web App Attack
๐ณ๐ด
jad-abuse
2026-07-28 18:56:03
(1 month ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. Observed by 1 sensor(s); 1 hits.
show less
Brute-Force
Web App Attack
๐ซ๐ท
Sklurk
2026-07-16 12:21:40
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-09 00:01:57
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-06-23 04:55:22
(2 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 19:40:21
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 14:40:15.367755 2026] [security2:error] [pid 21642:tid 21642] [client 209.50.175.1:40135] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gacstoday.com"] [uri "/admin/.env"] [unique_id "aYo4H06C5OWiPh5BlFxauwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 17:09:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:09:03.957192 2026] [security2:error] [pid 30483:tid 30483] [client 209.50.175.1:43851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fullbladderclub.com"] [uri "/api/.env"] [unique_id "aYoUr-zgYZK01dAotpLeqgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 07:57:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 02:57:12.942513 2026] [security2:error] [pid 7437:tid 7437] [client 209.50.175.1:35377] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fwa51.com"] [uri "/v2/.git/config"] [unique_id "aYmTWNc8A6_06-oTKGeQiQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 06:15:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 01:15:21.031640 2026] [security2:error] [pid 2736:tid 2736] [client 209.50.175.1:48811] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "furballaudio.com"] [uri "/v2/.git/config"] [unique_id "aYl7eavnM6opRY9qxfMpSwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-09 07:18:47
(8 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:38:20
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:38:16.242020 2025] [security2:error] [pid 27439:tid 27547] [client 209.50.175.1:12887] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pwalshdesign.com"] [uri "/.svn/wc.db"] [unique_id "aSQniAdRJ-GlrOkYv178pQAAANA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:18:09
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:18:02.551408 2025] [security2:error] [pid 243932:tid 243981] [client 209.50.175.1:52095] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cibernetic.com"] [uri "/.svn/wc.db"] [unique_id "aSQiylc8EtVRkmyAMevciAAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack