๐ฉ๐ช
Bedios GmbH
2026-07-20 15:12:50
(35 minutes ago)
Login credentials theft attempt
Hacking
๐ฉ๐ช
kkwemi
2026-07-20 14:26:51
(1 hour ago)
Blocked by block-exploit-paths on /.env.prod
Bad Web Bot
๐ซ๐ท
zulzeen
2026-07-20 14:14:08
(1 hour ago)
[incypit-web] Banned by Fail2ban (Jail: syswarden-secretshunter)
Hacking
Web App Attack
Bad Web Bot
Port Scan
๐ซ๐ท
omartin
2026-07-20 13:42:58
(2 hours ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ฎ
diego021
2026-07-20 13:25:44
(2 hours ago)
31.56.209.52 135.181.251.148 - [20/Jul/2026:08:25:42 -0500] "GET /.env.prod HTTP/1.1" 404 158 "-" "M ...
show more
31.56.209.52 135.181.251.148 - [20/Jul/2026:08:25:42 -0500] "GET /.env.prod HTTP/1.1" 404 158 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
31.56.209.52 135.181.251.148 - [20/Jul/2026:08:25:42 -0500] "GET /.env.production HTTP/1.1" 404 158 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
31.56.209.52 135.181.251.148 - [20/Jul/2026:08:25:42 -0500] "GET /.env HTTP/1.1" 404 158 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
31.56.209.52 135.181.251.148 - [20/Jul/2026:08:25:42 -0500] "GET /.env.backup HTTP/1.1" 404 158 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
...
show less
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-07-20 13:07:02
(2 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
SysAdmin Dylan
2026-07-20 11:46:48
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 31.56.209.52 (NL/The Netherlands/-): 10 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 31.56.209.52 (NL/The Netherlands/-): 10 in the last 3600 secs
show less
Brute-Force
๐ต๐พ
armandosaucedo.me
2026-07-20 11:32:56
(4 hours ago)
Threat Intelligence via ARMTI, Web Attack: GET /.env
Web App Attack
๐ฉ๐ช
sojan
2026-07-20 10:48:46
(4 hours ago)
31.56.209.52 - - [20/Jul/2026:12:48:46 +0200] "GET /.env HTTP/1.1" 502 157 "-" "Mozilla/5.0 (compati ...
show more
31.56.209.52 - - [20/Jul/2026:12:48:46 +0200] "GET /.env HTTP/1.1" 502 157 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
31.56.209.52 - - [20/Jul/2026:12:48:46 +0200] "GET /.env.prod HTTP/1.1" 502 157 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
31.56.209.52 - - [20/Jul/2026:12:48:46 +0200] "GET /.env.production HTTP/1.1" 502 157 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
...
show less
Web App Attack
๐บ๐ธ
kuj
2026-07-20 10:22:32
(5 hours ago)
2026-07-20T04:22:32.093859-06:00 derpamp-oci derper[1051]: 2026/07/20 04:22:32 http: TLS handshake e ...
show more
2026-07-20T04:22:32.093859-06:00 derpamp-oci derper[1051]: 2026/07/20 04:22:32 http: TLS handshake error from 31.56.209.52:43374: acme/autocert: missing server name
2026-07-20T04:22:32.094231-06:00 derpamp-oci derper[1051]: 2026/07/20 04:22:32 http: TLS handshake error from 31.56.209.52:43368: acme/autocert: missing server name
2026-07-20T04:22:32.094854-06:00 derpamp-oci derper[1051]: 2026/07/20 04:22:32 http: TLS handshake error from 31.56.209.52:43354: acme/autocert: missing server name
...
show less
Port Scan
Brute-Force
๐ซ๐ท
Entalpi.net
2026-07-20 09:50:45
(5 hours ago)
Repeated requests against sensitive web endpoints
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-07-20 09:14:36
(6 hours ago)
Probing websites for vulnerabilities
Web App Attack
Anonymous
2026-07-20 08:14:03
(7 hours ago)
(caddyscan) Scanner path probe from 31.56.209.52 (NL/The Netherlands/-): 5 in the last 3600 secs; Po ...
show more
(caddyscan) Scanner path probe from 31.56.209.52 (NL/The Netherlands/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 216.128.134.2 200 2627 31.56.209.52 - - [20/Jul/2026:08:14:02 +0000] "GET /.env HTTP/1.1"
216.128.134.2 200 2627 31.56.209.52 - - [20/Jul/2026:08:14:02 +0000] "GET /.env.prod HTTP/1.1"
216.128.134.2 200 2627 31.56.209.52 - - [20/Jul/2026:08:14:02 +0000] "GET /.env.production HTTP/1.1"
216.128.134.2 200 2627 31.56.209.52 - - [20/Jul/2026:08:14:02 +0000] "GET /.env.backup HTTP/1.1"
216.128.134.2 200 2627 31.56.209.52 - - [20/Jul/2026:08:14:02 +0000] "GET /.env.staging HTTP/1.1"
show less
Port Scan
Anonymous
2026-07-20 08:10:14
(7 hours ago)
Blocked by firewall on hugin [443/tcp] | Rule: AbuseIPDB | SPT: 47942 | TTL: 57 | LEN: 60 | TOS: 0x0 ...
show more
Blocked by firewall on hugin [443/tcp] | Rule: AbuseIPDB | SPT: 47942 | TTL: 57 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฌ๐ง
Marten Mark
2026-07-20 08:04:09
(7 hours ago)
31.56.209.52 - - [20/Jul/2026:08:04:08 +0000] "GET /.env HTTP/1.1" 301 166 "-" "Mozilla/5.0 (compati ...
show more
31.56.209.52 - - [20/Jul/2026:08:04:08 +0000] "GET /.env HTTP/1.1" 301 166 "-" "Mozilla/5.0 (compatible; SecurityAudit/1.0)"
...
show less
Web App Attack
Bad Web Bot