๐บ๐ฆ
URAN Publishing Service
2026-07-27 07:54:49
(1 hour ago)
3.92.56.83 - - [27/Jul/2026:10:54:47 +0300] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Ma ...
show more
3.92.56.83 - - [27/Jul/2026:10:54:47 +0300] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
3.92.56.83 - - [27/Jul/2026:10:54:48 +0300] "GET /.env HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 07:50:34
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 3.92.56.83 (ec2-3-92-56-83.compute-1.amazonaws. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.92.56.83 (ec2-3-92-56-83.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 03:50:27.745976 2026] [security2:error] [pid 1430859:tid 1430859] [client 3.92.56.83:53412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tlambert.us"] [uri "/.git/config"] [unique_id "amcNw1rz889e5f-pq4kqCwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
NewWavesApp
2026-07-27 07:37:05
(1 hour ago)
(mod_security) mod_security triggered on hostname [redacted] 3.92.56.83 (US/United States/ec2-3-92-5 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 3.92.56.83 (US/United States/ec2-3-92-56-83.compute-1.amazonaws.com): (CF_ENABLE)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-07-26 05:23:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.92.56.83 (ec2-3-92-56-83.compute-1.amazonaws. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.92.56.83 (ec2-3-92-56-83.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 01:23:25.386025 2026] [security2:error] [pid 3224040:tid 3224040] [client 3.92.56.83:48342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trailermesomewhere.com"] [uri "/.git/config"] [unique_id "amWZzSzxNCO3zHSbKt5TfQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure
2026-07-26 04:19:20
(1 day ago)
csagent: score 21.5: 404 noise floor x6, secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐ฉ๐ช
dave
2026-07-26 02:58:43
(1 day ago)
threat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity ...
show more
threat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity/appsec-vpatch,crowdsecurity/vpatch-CVE-2025-55182,crowdsecurity/vpatch-env-access,crowdsecurity/vpatch-git-config targets=cloud hit_count=71 first_seen=2026-07-26T02:58:54Z last_seen=2026-07-26T02:58:43Z
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-07-26 02:19:12
(1 day ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.env
Web App Attack
๐ฑ๐ป
garmtech.com
2026-07-26 02:19:11
(1 day ago)
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js ...
show more
IM360 WAF: RCE via prototype pollution in React Server Components < 19.0.1/19.1.2/19.2.1 or Next.js < 15.0.5/16.0.7 (CVE-2025-55182, CVE-2025-66478)
show less
Hacking
Anonymous
2026-07-25 04:46:23
(2 days ago)
3.92.56.83 - - [25/Jul/2026:06:46:23 +0200] "GET /.env HTTP/1.1" 404 444 "-" "Mozilla/5.0 (X11; Linu ...
show more
3.92.56.83 - - [25/Jul/2026:06:46:23 +0200] "GET /.env HTTP/1.1" 404 444 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
3.92.56.83 - - [25/Jul/2026:06:46:23 +0200] "GET /.env HTTP/1.1" 404 248 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
3.92.56.83 - - [25/Jul/2026:06:46:23 +0200] "GET /.env.local HTTP/1.1" 404 444 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
3.92.56.83 - - [25/Jul/2026:06:46:23 +0200] "GET /.env.local HTTP/1.1" 404 248 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
3.92.56.83 - - [25/Jul/2026:06:46:23 +0200] "GET /.env.production HTTP/1.1" 404 444 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
3.92.56.83 - - [25/Jul/2026:06:46:23 +0200] "GET /.env.production HTTP/1
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-07-25 03:32:37
(2 days ago)
CrowdSec: crowdsecurity/http-sensitive-files | req: /.git/config | 5 distinct paths | UA: Mozilla/5. ...
show more
CrowdSec: crowdsecurity/http-sensitive-files | req: /.git/config | 5 distinct paths | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Hacking
๐ณ๐ฑ
Site.eu
2026-07-25 01:30:36
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐ฟ๐ฆ
IrisFlower
2022-11-25 08:16:15
(3 years ago)
Unauthorized connection attempt detected from IP address 3.92.56.83 to port 8080 [J]
Port Scan
Hacking
๐ฟ๐ฆ
IrisFlower
2022-11-25 07:36:33
(3 years ago)
Unauthorized connection attempt detected from IP address 3.92.56.83 to port 8080 [J]
Port Scan
Hacking