π³π±
ConsulHosting
2026-08-28 06:53:40
(2 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
π©πͺ
Lino Project
2026-08-28 06:53:28
(2 hours ago)
CrowdSec abuse IP report (host SRV-2) Scenario: crowdsecurity/http-dos-swithcing-ua
Hacking
Anonymous
2026-08-28 06:33:42
(2 hours ago)
Web application attack detected.
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 06:16:05
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.153.34 (34.153.104.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.153.34 (34.153.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:15:58.968693 2026] [security2:error] [pid 10292:tid 10292] [client 34.104.153.34:6052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.srosa.com"] [uri "/@fs/.env.staging"] [unique_id "apEnnrBTjK3043854wY-wgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 05:50:42
(3 hours ago)
[Fri Aug 28 05:50:42.208808 2026] [security2:error] [pid 762332:tid 762332] [client 34.104.153.34:39 ...
show more
[Fri Aug 28 05:50:42.208808 2026] [security2:error] [pid 762332:tid 762332] [client 34.104.153.34:39392] [client 34.104.153.34] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.lithomessiniaki.gr"] [uri "/@fs/.env.local"] [unique_id "apEhsszPxpDJ9E9n8z_cHQAAAB4"]
[Fri Aug 28 05:50:42.374299 2026] [security2:error] [pid 765252:tid 765252] [client 34.104.153.34:39508] [client 34.104.153.34] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total S
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 05:33:34
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.153.34 (34.153.104.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.153.34 (34.153.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:33:27.532944 2026] [security2:error] [pid 8838:tid 8838] [client 34.104.153.34:9870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.deploy6tharmy.com.mininoarg.com"] [uri "/@fs/app/.env"] [unique_id "apEdp_ZkRrKDLYT7yUI8ewAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-08-28 04:28:52
(4 hours ago)
Excessive multi-domain requests
Brute-Force
πΊπΈ
TPI-Abuse
2026-08-28 04:26:13
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.153.34 (34.153.104.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.153.34 (34.153.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 00:26:08.333256 2026] [security2:error] [pid 23597:tid 23597] [client 34.104.153.34:38082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.naked60yearoldgaymen.com"] [uri "/@fs/app/.env"] [unique_id "apEN4E29vN7GcJr3sjf_dgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
4server
2026-08-28 04:20:15
(4 hours ago)
[FriAug2806:20:07.2130552026][security2:error][pid3991110:tid3992103][client34.104.153.34:0]ModSecur ...
show more
[FriAug2806:20:07.2130552026][security2:error][pid3991110:tid3992103][client34.104.153.34:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpcalendars.buonviaggio.ch\"][uri\"/@fs/src/.env\"][unique_id\"apEMd61NuAomh4S-JNl7cgAAAAM\"]
show less
Hacking
Web App Attack
Anonymous
2026-08-28 03:07:16
(5 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
π³π±
middelkoopcc
2026-08-28 02:45:01
(6 hours ago)
2026-08-28 04:43:07 GET /@fs/src/.env?raw?? [301] && 2026-08-28 04:43:07 GET /@fs/root/.env?raw?? [3 ...
show more
2026-08-28 04:43:07 GET /@fs/src/.env?raw?? [301] && 2026-08-28 04:43:07 GET /@fs/root/.env?raw?? [301] && 2026-08-28 04:43:07 GET /@fs/proc/self/environ?raw?? [301] && 113 more within 20 minutes
show less
Web App Attack
πΊπΈ
oralunal
2026-08-28 02:15:33
(6 hours ago)
IP banned by Fail2Ban in jail oral-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 02:06:48
(6 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.104.153.34 (34.153.104.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.104.153.34 (34.153.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:06:41.170426 2026] [security2:error] [pid 31649:tid 31649] [client 34.104.153.34:53806] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.alliancegroupga.com"] [uri "/@fs/.env"] [unique_id "apDtMXukGPMoxF6cYdlB1wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-08-28 01:29:00
(7 hours ago)
20 attempts against mh-misbehave-ban on chico
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-08-28 01:24:08
(7 hours ago)
Multiple WAF Violations
Web App Attack