๐ซ๐ท
โจ
2026-07-27 01:50:07
(3 hours ago)
Domain : merrionpark.com
Rule : env
2026-07-27 01:47:50 W3SVC55 PLESK76 217.194.212.5 GET /.env.loca ...
show more
Domain : merrionpark.com
Rule : env
2026-07-27 01:47:50 W3SVC55 PLESK76 217.194.212.5 GET /.env.local - 443 - 3.69.148.159 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 - - merrionpark.com 404 0 2 1500 298 14 - -
show less
Hacking
SQL Injection
๐ง๐ช
boxed-it
2026-07-26 14:46:39
(14 hours ago)
GET /.git/config (Tarpitted for 1d15h8m28s, wasted 8.06MB)
Web App Attack
๐ฑ๐ป
garmtech.com
2026-07-26 04:06:44
(1 day ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 03:35:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 23:35:54.045265 2026] [security2:error] [pid 1968272:tid 1968272] [client 3.69.148.159:57602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "meridianranchdrc.org"] [uri "/.git/config"] [unique_id "amWAmhZbZ2dAoMHBVGLAzwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-26 03:29:54
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-25 02:53:55
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐ณ๐ฑ
Savvii
2026-07-25 02:36:12
(2 days ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-25 02:10:02
(2 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 00:42:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 20:42:06.171204 2026] [security2:error] [pid 273630:tid 273772] [client 3.69.148.159:58972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mailme.name"] [uri "/.git/config"] [unique_id "amQGXv5Gd8oCTJ_s7Mhy3gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Progetto1
2026-07-24 12:40:06
(2 days ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ซ๐ท
pm33
2026-07-24 10:45:54
(2 days ago)
Unauthorized connections HTTP 403
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 10:01:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 06:01:08.387900 2026] [security2:error] [pid 549448:tid 549456] [client 3.69.148.159:51512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ozworkshop.com"] [uri "/.git/config"] [unique_id "amM35PjjKskB4y0s_3nqnAAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
rubixstudios
2026-07-24 08:44:02
(2 days ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 06:47:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 02:47:37.236662 2026] [security2:error] [pid 3974006:tid 3974006] [client 3.69.148.159:39730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oxyveg.com"] [uri "/.env.production"] [unique_id "amMKiXupO5zSsMPPEdA34wAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 05:40:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.69.148.159 (ec2-3-69-148-159.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 01:40:16.176226 2026] [security2:error] [pid 32313:tid 32313] [client 3.69.148.159:50098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oxford-gliding-club.abbeygardensllandudno.com"] [uri "/.git/config"] [unique_id "amL6wFOcw0waOguHf2z3-QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack