๐ซ๐ท
dynamix
2026-09-10 06:28:39
(1 week ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-10 05:39:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 01:38:57.689316 2026] [security2:error] [pid 11213:tid 11213] [client 34.101.98.175:53510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thalos.pe"] [uri "/.git/config"] [unique_id "aqJCcaYpPIKfo5LiNTle1QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
maxxsense
2026-09-10 04:35:53
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 34.101.98.175 (ID/Indonesia/175.98.101. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.101.98.175 (ID/Indonesia/175.98.101.34.bc.googleusercontent.com)
show less
SQL Injection
๐ธ๐ช
vaia.cloud
2026-09-10 02:15:02
(1 week ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-10 00:48:49
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
RamSet
2026-09-10 00:45:15
(1 week ago)
[swy] HTTP-Probe on port 443 (via domain). 134 distinct paths probed in 1min. Sustained 70 req/min, ...
show more
[swy] HTTP-Probe on port 443 (via domain). 134 distinct paths probed in 1min. Sustained 70 req/min, 133 nonexistent paths (404). Paths: /.git/config, /.env, /.env.local, /.env.production, /.env.staging, /.env.development, /.env.test, /.env.remote, /.env.bak, /.env.backup, /.env.save, /.env.old, /.env.sample, /.env.example, /.env.dev, /.env.prod, /.env.stage, /.env.ci, /.env.docker, /.env.live, /.env.preprod, /.env.uat, /.env.dist, /.env.swp, /app/.env, /apps/.env, /api/.env, /web/.env, /site/.env, /public/.env, /admin/.env, /backend/.env, /server/.env, /frontend/.env, /src/.env, /core/.env, /core/app/.env, /core/Database/.env, /config/.env, /private/.env, /current/.env, /release/.env, /releases/.env, /shared/.env, /deploy/.env, /build/.env, /dist/.env, /public_html/.env, /htdocs/.env, /www/.env, /html/.env, /live/.env, /prod/.env, /dev/.env, /staging/.env, /laravel/.env, /symfony/.env, /wordpress/.env, /wp/.env, /cms/.env
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-09 22:16:30
(1 week ago)
Try to access /.git/config
Web App Attack
๐ฎ๐น
VHosting
2026-09-09 17:35:03
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ท
Octopuce
2026-09-09 17:01:44
(1 week ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 13:54:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 09:53:55.651441 2026] [security2:error] [pid 20446:tid 20446] [client 34.101.98.175:32862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michalovic.com"] [uri "/.git/config"] [unique_id "aqFk85ZNK4u2UkveGi7xbQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-09 13:51:30
(1 week ago)
[ns31.kdns.gr] httpd-config-scan: sites=www.michalopoulosstore.gr; logs=/var/log/httpd/domains/micha ...
show more
[ns31.kdns.gr] httpd-config-scan: sites=www.michalopoulosstore.gr; logs=/var/log/httpd/domains/michalopoulosstore.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 13:37:59
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 09:37:51.540608 2026] [security2:error] [pid 20851:tid 20851] [client 34.101.98.175:49562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ineedafriend.com"] [uri "/.git/config"] [unique_id "aqFhL6Oi9_yZlrTRq6fTCQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-09 12:30:42
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 09:09:47
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.98.175 (175.98.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 05:09:41.702611 2026] [security2:error] [pid 11638:tid 11638] [client 34.101.98.175:34642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelwakim.com"] [uri "/.git/config"] [unique_id "aqEiVaLHVbFEHpAs7yWoxgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack