π©πͺ
georgengelmann
2026-06-12 06:29:25
(5 hours ago)
Failed login attempt for administrator
Brute-Force
Web App Attack
πΊπΈ
dtorrer
2026-06-11 18:09:33
(18 hours ago)
Brute-force general attack.
Brute-Force
π¬π§
PeravixGroup
2026-05-09 09:31:30
(1 month ago)
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severit ...
show more
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
πΈπ¬
pusathosting.com
2026-03-22 07:36:03
(2 months ago)
24ds22 bruteforce
Brute-Force
Web App Attack
Anonymous
2026-01-10 06:29:16
(5 months ago)
216.26.240.179 - - [10/Jan/2026:06:29:15 +0000] "GET /backup/ HTTP/1.1" 404 44319 "-" "Mozilla/5.0 ( ...
show more
216.26.240.179 - - [10/Jan/2026:06:29:15 +0000] "GET /backup/ HTTP/1.1" 404 44319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-01-03 18:20:50
(5 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
πΊπΈ
TPI-Abuse
2025-12-02 13:21:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 08:21:35.696678 2025] [security2:error] [pid 2377:tid 2377] [client 216.26.240.179:16117] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wookheo.com"] [uri "/.git/HEAD"] [unique_id "aS7n32MoggUg-U1xXHuFDwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 07:27:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.240.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.240.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 02:27:20.721383 2025] [security2:error] [pid 20170:tid 20178] [client 216.26.240.179:26213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kandooo.com"] [uri "/.env"] [unique_id "aS6U2BsXHiUdaTtp0ABAgwAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-01 20:24:48
(7 months ago)
[redacted] 216.26.240.179 - - [01/Nov/2025:21:24:36 +0100] "POST /xmlrpc.php HTTP/2.0" 200 401 "-" " ...
show more
[redacted] 216.26.240.179 - - [01/Nov/2025:21:24:36 +0100] "POST /xmlrpc.php HTTP/2.0" 200 401 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26 (KHTML, like Gecko) Version/6.0 Mobile/10A403 Safari/8536.25"
[redacted] 216.26.240.179 - - [01/Nov/2025:21:24:37 +0100] "POST /xmlrpc.php HTTP/2.0" 200 401 "-" "Mozilla/5.0 (Macintosh; U; PPC Mac OS X 10_4_11; en) AppleWebKit/525.27.1 (KHTML, like Gecko) Version/3.2.1 Safari/525.27.1"
[redacted] 216.26.240.179 - - [01/Nov/2025:21:24:38 +0100] "POST /xmlrpc.php HTTP/2.0" 200 401 "-" "Mozilla/5.0 (iPad; CPU OS 7_0_4 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11B554a Safari/9537.53"
[redacted] 216.26.240.179 - - [01/Nov/2025:21:24:39 +0100] "POST /xmlrpc.php HTTP/2.0" 200 401 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.115 Safari/537.36"
[redacted] 216.26.
...
show less
Hacking
Web App Attack
Anonymous
2025-10-30 14:40:17
(7 months ago)
WordPress Brute Force
Brute-Force
π©πͺ
Marc
2025-10-29 20:42:08
(7 months ago)
Brute-Force