Anonymous
2026-07-29 07:00:00
(12 hours ago)
Apache probe; attempts=2622; exact paths: /.env | /.env.backup | /.env.bak | /.env.dev | /.env.devel ...
show more
Apache probe; attempts=2622; exact paths: /.env | /.env.backup | /.env.bak | /.env.dev | /.env.development | /.env.example | /.env.local | /.env.old | /.env.php.bak | /.env.prod.bak | /.env.production | /.env.production.bak | /.env.staging | /.env.swp | /.env.test | /.git-credentials | /.git/HEAD | /.git/config | /.hermes/.env | /.openclaw/.env | /@fs/.env?raw?? | /@fs/root/.env?raw?? | /actuator | /actuator/configprops | /actuator/env | /actuator/mappings | /admin/.env | /api/.env | /api/.env/ | /app/.env | /backend/.env | /config.env | /config/.env | /config/.env.php | /core/.env | /dev/.env | /docker/.env | /frontend/.env | /laravel/.env | /production/.env | /public/.env | /sendgrid.env | /server/.env | /src/.env | /staging/.env | /web/.env
show less
Web App Attack
πΊπΈ
leasj
2026-07-28 19:04:58
(1 day ago)
Observed Scanned 23 known-sensitive endpoint(s), e.g.: /.claude.json, /.claude/settings.json, /.aws/ ...
show more
Observed Scanned 23 known-sensitive endpoint(s), e.g.: /.claude.json, /.claude/settings.json, /.aws/config, /.git/config, /.aws/credentials.
show less
Hacking
Bad Web Bot
Web App Attack
π©πͺ
grassau.com
2026-07-27 11:35:59
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.106.77.96 (US/United States/Utah/Sal ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.106.77.96 (US/United States/Utah/Salt Lake City/96.77.106.34.bc.googleusercontent.com)
show less
SQL Injection
π©πͺ
grassau.com
2026-07-27 10:35:28
(2 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.106.77.96 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.106.77.96 (US/United States/Utah/Salt Lake City/96.77.106.34.bc.googleusercontent.com)
show less
Bad Web Bot
π³π±
Site.eu
2026-07-27 10:21:25
(2 days ago)
Excessive 404/403 errors
Brute-Force
π³π±
e.fierstra
2026-07-27 10:09:15
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-07-27 09:28:41
(2 days ago)
Excessive multi-domain requests
Brute-Force
ππΊ
DumaNet
2026-07-27 03:08:00
(2 days ago)
Web app attack attempts, scanning for vulnerability.
Date: 2026 Jul 26. 22:59:51
Source IP: 34.106 ...
show more
Web app attack attempts, scanning for vulnerability.
Date: 2026 Jul 26. 22:59:51
Source IP: 34.106.77.96
Portion of the log(s):
34.106.77.96 - [26/Jul/2026:22:59:51 +0200] "GET /secrets.yml HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
34.106.77.96 - [26/Jul/2026:22:59:51 +0200] "GET /.docker/config.json HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
34.106.77.96 - [26/Jul/2026:22:59:51 +0200] "GET /credentials.json HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
34.106.77.96 - [26/Jul/2026:22:59:51 +0200] "GET /.npmrc HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
34.106.77.96 - [26/Jul/2026:22:59:51 +0200] "GET /z9x8c7v6b5-debug-trigger-cloud.[removed].hu HTTP/1.1"
show less
Web App Attack
π©πͺ
BlueWire Hosting
2026-07-26 19:46:13
(2 days ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
π§πͺ
voormedia
2026-07-26 18:41:50
(3 days ago)
Accessed trap at '/.git/HEAD'
Web App Attack
π©πͺ
paissangroup
2026-07-26 18:33:04
(3 days ago)
Multiple WAF Violations
Web App Attack
π³π±
Savvii
2026-07-26 18:28:27
(3 days ago)
15 attempts against mh-modsecurity-ban on byrd
Brute-Force
Web App Attack
π©πͺ
Bedios GmbH
2026-07-26 18:13:10
(3 days ago)
Login credentials theft attempt
Hacking
π¨π
lufi
2026-07-26 12:02:15
(3 days ago)
2026-07-26T14:02:15+02:00 lufischer04 ids442 2026-07-26 14:02:15 34.106.77.96: blacklisted Pattern: ...
show more
2026-07-26T14:02:15+02:00 lufischer04 ids442 2026-07-26 14:02:15 34.106.77.96: blacklisted Pattern: /.env.production
...
show less
Web Spam
Brute-Force
Hacking
Web App Attack
π©πͺ
maxpower
2026-07-26 10:46:35
(3 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.106.77.96 (US/United States/96.77.106 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.106.77.96 (US/United States/96.77.106.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.106.77.96 - - [26/Jul/2026:12:46:23 +0200] "GET /config/secrets.yml HTTP/2.0" 500 715 "-" "anthropic-ai" "34.106.77.96" host=staging.villapardi.it
show less
Port Scan