๐ณ๐ฑ
Savvii
2026-09-24 15:48:17
(7 hours ago)
20 attempts against mh_ha-misbehave-ban on sedna
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-24 09:20:35
(13 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 03:04:46
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:04:42.448184 2026] [security2:error] [pid 10356:tid 10356] [client 34.126.182.134:52928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "allotrope.com"] [uri "/.git/config"] [unique_id "arSTSmIFWvpUWMia0G-AmgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
foxxelabs
2026-09-22 12:53:23
(2 days ago)
Automated report from FoxxeLabs Sentinel. Path probed: /.git/config | Project: anseo | Reason(s): Kn ...
show more
Automated report from FoxxeLabs Sentinel. Path probed: /.git/config | Project: anseo | Reason(s): Known exploit path: /.git/config | User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Sa
show less
Web App Attack
Anonymous
2026-09-22 08:19:45
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
kosada.com
2026-09-22 08:02:17
(2 days ago)
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla ...
show more
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
๐ช๐ธ
robotstxt
2026-09-21 17:49:04
(3 days ago)
34.126.182.134 - - [21/Sep/2026:17:48:16 +0000] "GET /ajgirona/.env HTTP/2.0" 403 21689 "-" "Mozilla ...
show more
34.126.182.134 - - [21/Sep/2026:17:48:16 +0000] "GET /ajgirona/.env HTTP/2.0" 403 21689 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.126.182.134" edge="104.23.175.95"
34.126.182.134 - - [21/Sep/2026:17:48:17 +0000] "GET /ajgirona/.env.local HTTP/2.0" 403 21690 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.126.182.134" edge="104.23.175.95"
34.126.182.134 - - [21/Sep/2026:17:48:19 +0000] "GET /ajgirona/.env.production HTTP/2.0" 403 21690 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.126.182.134" edge="104.23.175.95"
34.126.182.134 - - [21/Sep/2026:17:48:20 +0000] "GET /ajgirona/.env.staging HTTP/2.0" 403 21690 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.126.182.134" edge="104.23.175.95"
34.126.182.134 - - [21/Sep/2026:17:48:2
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 15:55:32
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:55:26.839597 2026] [security2:error] [pid 11635:tid 11635] [client 34.126.182.134:33914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ajdejano.janbloom-art.com"] [uri "/.git/config"] [unique_id "arFTbmc7Qm318eCPLgXRZwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-21 15:35:46
(3 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-21 05:51:25
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 01:51:20.723227 2026] [security2:error] [pid 1560:tid 1560] [client 34.126.182.134:35914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.progressivefileshare.org"] [uri "/.git/config"] [unique_id "arDF2KNmBTTokZfXen1dMQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 02:16:48
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.182.134 (134.182.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 22:16:43.022294 2026] [security2:error] [pid 22718:tid 22737] [client 34.126.182.134:32908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.priyom.us"] [uri "/.git/config"] [unique_id "arCTi_vsD4R7ArMTCrnaCgAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 14:20:03
(4 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack