🇳🇱
e.fierstra
2026-08-29 10:18:15
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇬🇧
gws-hostmaster
2026-08-29 10:16:05
(1 day ago)
ModSecurity OWASP CRS (Anomaly Score: 5): Restricted File Access Attempt;
Web App Attack
🇦🇹
Erpelstolz
2026-08-29 08:12:37
(1 day ago)
VM 131: 34.11.14.201 - - [29/Aug/2026:10:12:36 +0200] "GET /app/.git/config HTTP/1.1" 404 9852
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 06:42:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:42:43.375274 2026] [security2:error] [pid 18410:tid 18410] [client 34.11.14.201:46320] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnatuttle.player-care.com"] [uri "/htdocs/.git/config"] [unique_id "apJ_Y1FU_43x4uSwt6hOSAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 06:15:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:15:34.627021 2026] [security2:error] [pid 8798:tid 8798] [client 34.11.14.201:55212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.usaenquirer.com.bamedica.com"] [uri "/.git/config"] [unique_id "apJ5BukUYadogf_x1o5V0gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-08-29 05:12:41
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-08-29 02:59:42
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇦
URAN Publishing Service
2026-08-29 01:12:33
(1 day ago)
[29/Aug/2026:04:12:32 +0300] -- 34.11.14.201 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more
[29/Aug/2026:04:12:32 +0300] -- 34.11.14.201 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇫🇷
✨
2026-08-29 00:28:18
(1 day ago)
Domain : blog.social-circle.co.uk
Rule : config
2026-08-29 00:27:09 ***hidden-privacy*** GET /public ...
show more
Domain : blog.social-circle.co.uk
Rule : config
2026-08-29 00:27:09 ***hidden-privacy*** GET /public/.git/config - 443 - 34.11.14.201 HTTP/1.1 crusader-worker/1.0 - blog.social-circle.co.uk 404 8 0 1477 114 82 - -
show less
Hacking
SQL Injection
🇺🇸
TPI-Abuse
2026-08-28 23:13:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:13:18.718095 2026] [security2:error] [pid 10130:tid 10130] [client 34.11.14.201:45950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.burningdownthevillger.com.tremulant.com"] [uri "/.git/config"] [unique_id "apIWDomfieao8wZJA54unQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-08-28 21:15:02
(1 day ago)
Multiple WAF Violations
Web App Attack
🇩🇪
Marc
2026-08-28 13:54:51
(2 days ago)
34.11.14.201 - - [28/Aug/2026:15:54:51 +0200] "GET /www/.git/config HTTP/1.1" 404 4617 "-" "crusader ...
show more
34.11.14.201 - - [28/Aug/2026:15:54:51 +0200] "GET /www/.git/config HTTP/1.1" 404 4617 "-" "crusader-worker/1.0" 34.11.14.201 - - [28/Aug/2026:15:54:51 +0200] "GET /src/.git/config HTTP/1.1" 404 4617 "-" "crusader-worker/1.0" 34.11.14.201 - - [28/Aug/2026:15:54:51 +0200] "GET /app/.git/config HTTP/1.1" 404 4616 "-" "crusader-worker/1.0"
show less
Brute-Force
🇸🇪
vaia.cloud
2026-08-28 13:40:02
(2 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇨🇦
csnavarro2020
2026-08-28 12:46:57
(2 days ago)
Automated scan for known vulnerable/nonexistent path: /app/.git/config
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-28 12:05:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.11.14.201 (201.14.11.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:04:53.431190 2026] [security2:error] [pid 32599:tid 32599] [client 34.11.14.201:59164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.iconbizpromo.com"] [uri "/html/.git/config"] [unique_id "apF5ZQjNvTyb12pfUqMAjwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack