๐ญ๐บ
btimon
2026-01-04 14:19:00
(9 months ago)
Cross.Site.Scripting
Brute-Force
๐น๐ญ
MWA SOC
2025-12-20 02:14:41
(9 months ago)
Hacking
๐น๐ผ
kk_it_man
2025-12-20 01:03:02
(9 months ago)
ET WEB_SERVER Script tag in URI Possible Cross Site Scripting Attempt
Port Scan
๐ฏ๐ต
VXG-NET
2025-12-20 00:27:45
(9 months ago)
port=80, indicator_type=code-execution
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2025-12-19 03:20:30
(9 months ago)
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 18 22:20:27.351607 2025] [security2:error] [pid 11451:tid 11451] [client 34.12.213.241:58122] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||listings.cruisingforsex.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /download.php?attachid=<script>alert('xss')</script>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "listings.cruisingforsex.com"] [uri "/download.php"] [unique_id "aUTEe0vnFLwqupsPowDI7QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-19 02:46:30
(9 months ago)
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 18 21:46:26.613556 2025] [security2:error] [pid 21759:tid 21759] [client 34.12.213.241:63486] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||www.easternimport.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /products.php?catid=13&catname=<script>alert('xss')</script>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.easternimport.com"] [uri "/products.php"] [unique_id "aUS8gl-2Q1PWXC_Y5590lwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-19 02:08:42
(9 months ago)
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 18 21:08:38.098845 2025] [security2:error] [pid 7290:tid 7290] [client 34.12.213.241:64879] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "3"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||kountz.org|F|2"] [data "Matched Data: <script found within REQUEST_URI: /showsource.php?sitever=standard&sourceid=<script>alert('xss')</script>&tree=kountz"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "kountz.org"] [uri "/showsource.php"] [unique_id "aUSzpnzu5d782Bjna7bSAAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-12-19 02:03:34
(9 months ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-19 01:45:24
(9 months ago)
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 18 20:45:17.487350 2025] [security2:error] [pid 9256:tid 9256] [client 34.12.213.241:55948] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||old.renju.net|F|2"] [data "Matched Data: <script found within REQUEST_URI: /media/showarticle.php?article_id=<script>alert('xss')</script>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "old.renju.net"] [uri "/media/showarticle.php"] [unique_id "aUSuLe2Yof-Bz4gvfxDHZwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
zolav8
2025-12-19 01:20:05
(9 months ago)
SQL injection / web attack attempt
Hacking
SQL Injection
๐น๐ผ
kk_it_man
2025-12-19 01:10:59
(9 months ago)
Hacking
๐ต๐น
Information Security
2025-12-19 00:41:31
(9 months ago)
Web App Attack
Web App Attack
๐น๐ผ
kk_it_man
2025-12-19 00:33:02
(9 months ago)
ET WEB_SERVER Script tag in URI Possible Cross Site Scripting Attempt
Port Scan
๐ญ๐บ
bcsaba
2025-12-19 00:21:10
(9 months ago)
SQL injection attempt.
34.12.213.241 - - [19/Dec/2025:01:21:08 +0100] "GET /scripts/view.php?Itemid= ...
show more
SQL injection attempt.
34.12.213.241 - - [19/Dec/2025:01:21:08 +0100] "GET /scripts/view.php?Itemid=38&id=505&oid=2202671&option=com_content&option=%27&task=view HTTP/1.1" 200 1758234 "-" "Mozilla/5.0 (Linux; Android 9; ASUS_I005DA Build/PI; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/133.0.6943.122 Mobile"
show less
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-19 00:20:33
(9 months ago)
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:212620) triggered by 34.12.213.241 (241.213.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 18 19:20:26.088744 2025] [security2:error] [pid 17408:tid 17408] [client 34.12.213.241:54854] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||www.caferutadelaseda.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /carrito.php?currency=mxn&accion=<script>alert('xss')</script>&producto=229&store=mx"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "www.caferutadelaseda.com"] [uri "/carrito.php"] [unique_id "aUSaSkSIbDY7buaxtG5J-wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack