๐ซ๐ท
IRISIO
2026-08-28 08:08:20
(5 hours ago)
scans/SQL injection/spam posts : 831 queries
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-27 21:54:17
(15 hours ago)
(mod_security) mod_security (id:210730) triggered by 3.249.64.153 (ec2-3-249-64-153.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210730) triggered by 3.249.64.153 (ec2-3-249-64-153.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 17:54:10.209333 2026] [security2:error] [pid 7804:tid 7804] [client 3.249.64.153:49674] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.brodyworks.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.brodyworks.com"] [uri "/rclone.conf"] [unique_id "apCyAoeZWI1rJuJOCIN21gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
simon boshoff
2026-08-27 21:02:21
(16 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-27 20:57:34
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.249.64.153 (ec2-3-249-64-153.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 3.249.64.153 (ec2-3-249-64-153.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 16:57:29.012396 2026] [security2:error] [pid 7714:tid 7714] [client 3.249.64.153:35188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "manvsfoodlocations.com"] [uri "/config/.env.php"] [unique_id "apCkuePVLkI6SEdZ9AztAgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
ptlab
2026-08-27 20:46:07
(16 hours ago)
Detected env_leak attack from WP-host.
Hacking
Web App Attack
Anonymous
2026-08-27 19:50:28
(17 hours ago)
Banned by Fail2Ban on server
Web App Attack
๐ฉ๐ช
Skyrider
2026-08-27 19:44:16
(17 hours ago)
Nginx: HTTP 4xx probe/scan attempts. Automated fail2ban report.
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 19:35:03
(17 hours ago)
Bot / scanning and/or hacking attempts: GET /wp-config.php~ HTTP/2.0
Hacking
Web App Attack
๐ฉ๐ช
Inamin
2026-08-27 19:26:35
(17 hours ago)
3.249.64.153 - - [28/Aug/2026:03:26:33 +0800] "GET /login HTTP/2.0" 404 555 "-" "Mozilla/5.0 (Window ...
show more
3.249.64.153 - - [28/Aug/2026:03:26:33 +0800] "GET /login HTTP/2.0" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
3.249.64.153 - - [28/Aug/2026:03:26:34 +0800] "GET /admin HTTP/2.0" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
...
show less
Hacking
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-27 19:24:43
(17 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 18:46:33
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 3.249.64.153 (ec2-3-249-64-153.eu-west-1.comput ...
show more
(mod_security) mod_security (id:210730) triggered by 3.249.64.153 (ec2-3-249-64-153.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:46:25.887245 2026] [security2:error] [pid 7599:tid 7599] [client 3.249.64.153:42808] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.aupapierjaponais.com|F|2"] [data ".aupapierjaponais.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.aupapierjaponais.com"] [uri "/z9x8c7v6b5-debug-trigger-www.aupapierjaponais.com"] [unique_id "apCGAWp55cG5uFHPo2FiKgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-08-27 17:10:49
(20 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
Anonymous
2026-08-27 16:19:09
(21 hours ago)
[web.zebs.ch] httpd-config-scan: sites=www.zebs.ch; logs=/var/log/httpd/domains/zebs.ch.log; samples ...
show more
[web.zebs.ch] httpd-config-scan: sites=www.zebs.ch; logs=/var/log/httpd/domains/zebs.ch.log; samples=/.env.production | /.env.local | /.env.backup
show less
Hacking
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2026-08-27 16:02:19
(21 hours ago)
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show more
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Brute-Force
Web App Attack
๐ฉ๐ฐ
HostingGroup
2026-08-27 16:01:54
(21 hours ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 3. First blocked: 2026-08-27.
show less
Bad Web Bot
Web App Attack