๐ฉ๐ช
Kotuhan
2026-06-15 10:56:37
(8 hours ago)
Honeypot: this IP sent web exploit attempts (RCE/SQLi/traversal/CVE probes) against a decoy host wit ...
show more
Honeypot: this IP sent web exploit attempts (RCE/SQLi/traversal/CVE probes) against a decoy host with no real service.
show less
Web App Attack
Hacking
๐ง๐ช
cmbplf
2026-06-15 09:45:43
(10 hours ago)
3.231 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐ฌ๐ง
consul.to
2026-06-15 09:23:54
(10 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 09:21:54
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:21:45.320077 2026] [security2:error] [pid 19544:tid 19558] [client 34.100.176.231:51354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tomrachman.com"] [uri "/public/.git/config"] [unique_id "ai_EKePG3TByPonrsB7HXgAAAYw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 07:14:23
(12 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:55:04
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:54:55.630599 2026] [security2:error] [pid 17848:tid 17848] [client 34.100.176.231:40610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.amarrasdeescobar.com.cerrovictoria.com"] [uri "/frontend/.git/config"] [unique_id "ai-hv2PJlwIAnyO-3Ys2jwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:31:38
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:31:33.015549 2026] [security2:error] [pid 16454:tid 16454] [client 34.100.176.231:51992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.siriusturbo.com.greenlight.us"] [uri "/html/.git/config"] [unique_id "ai-ONd4DP7xaGLvbvGdtVgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:56:49
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:56:47.013746 2026] [security2:error] [pid 18975:tid 18982] [client 34.100.176.231:60522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tennesseeplasticsurgeon.aafm.us"] [uri "/api/.git/config"] [unique_id "ai93_64O3Z75KZgPGmBjUAAAAYM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 03:55:02
(15 hours ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 02:54:06
(16 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ณ๐ฑ
debestelapp
2026-06-15 02:20:09
(17 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:39:40
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:39:34.979210 2026] [security2:error] [pid 30340:tid 30340] [client 34.100.176.231:57436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.qed-consulting.co"] [uri "/web/.git/config"] [unique_id "ai9X1lDGpz-Nr3RkKvHfjwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-15 00:18:48
(19 hours ago)
[MonJun1502:18:40.9019642026][security2:error][pid408598:tid409174][client34.100.176.231:0]ModSecuri ...
show more
[MonJun1502:18:40.9019642026][security2:error][pid408598:tid409174][client34.100.176.231:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"ticino-hosting.ch\"][uri\"/api/.git/config\"][unique_id\"ai9E4P_-gZqpGn9Ezv2k7QAAAQ0\"]
show less
Hacking
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-14 23:53:42
(19 hours ago)
(modsecurity) srv102 ModSecurity 34.100.176.231 (IN/India/231.176.100.34.bc.googleusercontent.com): ...
show more
(modsecurity) srv102 ModSecurity 34.100.176.231 (IN/India/231.176.100.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:00:41
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.176.231 (231.176.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:00:35.540754 2026] [security2:error] [pid 6493:tid 6493] [client 34.100.176.231:43524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.angelsofrhodeisland.com"] [uri "/blog/.git/config"] [unique_id "ai8yk43eKfW8i5DyfvlcCgAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack