๐บ๐ธ
Mundo Bueno
2026-10-09 05:21:45
(7 hours ago)
[ISILIA Protection v2.3] Tentative d'accรจs: /.git/config [RATE LIMITED - 1800s quarantine] | Pays: S ...
show more
[ISILIA Protection v2.3] Tentative d'accรจs: /.git/config [RATE LIMITED - 1800s quarantine] | Pays: SG | UA: Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)
show less
Hacking
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-10-09 05:10:33
(7 hours ago)
Automated WAF report: 200-300 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐ฉ๐ช
akasolutions.de
2026-10-09 05:02:21
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.124.132.177 (SG/Singapore/177.132.12 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.124.132.177 (SG/Singapore/177.132.124.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-10-09 04:23:48
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.124.132.177 (177.132.124.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.124.132.177 (177.132.124.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 00:23:42.040028 2026] [security2:error] [pid 10955:tid 10955] [client 34.124.132.177:47098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tsaifd.org"] [uri "/images../.env"] [unique_id "ashsTix9KNNfJfiYORh0HQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-10-09 03:03:36
(9 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฉ๐ช
crypto i trust, hold i must
2026-10-09 01:50:51
(10 hours ago)
Web scanner path: /api/console/api_server?sense_version=%40%40SENSE_VERSION&apis=../../../../../../. ...
show more
Web scanner path: /api/console/api_server?sense_version=%40%40SENSE_VERSION&apis=../../../../../../.env
show less
Web App Attack
๐ซ๐ท
โจ
2026-10-09 01:47:08
(10 hours ago)
Domain : truegov.co.uk
Rule : hack
2026-10-09 01:45:18 ***hidden-privacy*** GET /.htpasswd - 443 - 3 ...
show more
Domain : truegov.co.uk
Rule : hack
2026-10-09 01:45:18 ***hidden-privacy*** GET /.htpasswd - 443 - 34.124.132.177 HTTP/2 Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] ) - truegov.co.uk 404 0 2 1549 431 617 - -
show less
Hacking
SQL Injection
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-09 01:12:27
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.124.132.177 (177.132.124.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.124.132.177 (177.132.124.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 21:12:20.204848 2026] [security2:error] [pid 14021:tid 14021] [client 34.124.132.177:52290] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||troyhilldental.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "troyhilldental.com"] [uri "/z9x8c7v6b5-debug-trigger-troyhilldental.com"] [unique_id "asg_dEmGrowlBeHUrTbVZAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2026-10-09 01:10:45
(11 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐ณ๐ฑ
Alt255
2026-10-09 01:08:02
(11 hours ago)
[ti-12al] Web exploit scanning: 3 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-12al] Web exploit scanning: 3 suspicious requests detected by fail2ban jail <name>. Example: 34.124.132.177 - - \[09/Oct/2026:03:07:51 +0200\] "GET /.git/HEAD HTTP/2.0" 301 403 "-" "Mozilla/5.0 \(compatible\; MistralAI-User/1.0\; +https://mistral.ai/\)"
34.124.132.177 - - \[09/Oct/2026:03:07:51 +0200\] "GET /.aws/config HTTP/2.0" 301 406 "-" "Mozilla/5.0 \(compatible\; Qwenbot/1.0\; +https://qwen.alibaba.com/\)"
34.124.132.177 - - \[09/Oct/2026:03:07:51 +0200\] "GET /.git/config HTTP/2.0" 301 405 "-" "Mozilla/5.0 \(compatible\; YiBot/1.0\; +https://01.ai/\)"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-10-09 01:01:44
(11 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
dot.mg
2026-10-09 00:54:02
(11 hours ago)
Bad behaviour
Web Spam
๐จ๐ฆ
Anytech
2026-10-09 00:52:38
(11 hours ago)
Blocked by ConnMonitor
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 00:45:09
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.124.132.177 (177.132.124.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.124.132.177 (177.132.124.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 20:45:02.284640 2026] [security2:error] [pid 14092:tid 14092] [client 34.124.132.177:48462] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||trompelart.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "trompelart.com"] [uri "/z9x8c7v6b5-debug-trigger-trompelart.com"] [unique_id "asg5DmOVRXe2CWlf7WpISAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-10-09 00:37:39
(11 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack