๐บ๐ธ
TPI-Abuse
2026-07-27 17:25:26
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 13:25:22.898409 2026] [security2:error] [pid 2270413:tid 2270530] [client 3.148.192.0:44248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.seniorspecialistgroup.com.richardleeweatherman.com"] [uri "/.git/config"] [unique_id "ameUgkbJ4N9sIf_bH4cycAAAAdE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-27 13:36:01
(14 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ซ๐ท
masterguru
2026-07-27 10:54:44
(17 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-27 09:44:32
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 05:44:24.685322 2026] [security2:error] [pid 948404:tid 948404] [client 3.148.192.0:55622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sellitwithsteve.listitwithsteve.com"] [uri "/.git/config"] [unique_id "amcoeHY2AlHvw_2Xq-m_3gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
[email protected]
2026-07-27 09:15:28
(19 hours ago)
PrestaShop Security Module: suspicious probe path detected (/.env)
Web App Attack
๐ฌ๐ง
consul.to
2026-07-27 08:52:15
(19 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-27 08:28:25
(19 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 3.148.192.0 (US/United States/Ohio/Colu ...
show more
(mod_security) mod_security triggered on hostname [redacted] 3.148.192.0 (US/United States/Ohio/Columbus/ec2-3-148-192-0.us-east-2.compute.amazonaws.com)
show less
SQL Injection
๐ซ๐ท
dynamix
2026-07-27 07:43:13
(20 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-07-26 06:41:09
(1 day ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
masterguru
2026-07-26 06:22:00
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 05:48:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 01:48:27.444826 2026] [security2:error] [pid 2655206:tid 2655206] [client 3.148.192.0:55244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.servicios.imerka.com.mx"] [uri "/.git/config"] [unique_id "amWfq8fRnHrhbHfJLklgNQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-26 02:46:42
(2 days ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
Octopuce
2026-07-26 02:44:09
(2 days ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐ฌ๐ง
consul.to
2026-07-25 06:44:22
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 05:55:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.148.192.0 (ec2-3-148-192-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 01:55:17.395092 2026] [security2:error] [pid 2639295:tid 2639316] [client 3.148.192.0:59614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saryatech.pershia.net"] [uri "/.git/config"] [unique_id "amRPxdGEbOXdgnV0x0U9sAAAAYw"]
show less
Brute-Force
Bad Web Bot
Web App Attack